Back to Database
Status published
High
CVE-2009-3180
Anantasoft Gazelle CMS 1.0 allows remote attackers to conduct a...
Vulnerability Description
Anantasoft Gazelle CMS 1.0 allows remote attackers to conduct a password reset for other users via a modified user parameter to renew.php.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2009-3180
Credits & Attribution
No credits recorded in the NVD database.
More from anantasoft
View All →CVE-2011-3702
Ananta Gazelle 1.0 allows remote attackers to obtain sensitive information...
Medium
5
CVE-2009-3182
Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS...
Medium
6.8
CVE-2009-3181
Directory traversal vulnerability in Anantasoft Gazelle CMS 1.0 allows remote...
Medium
5
CVE-2009-3171
Multiple cross-site scripting (XSS) vulnerabilities in Anantasoft Gazelle CMS 1.0...
Medium
4.3
CVE-2009-3167
Directory traversal vulnerability in index.php in Anantasoft Gazelle CMS 1.0,...
Medium
4.3
Affected Vendor
anantasoft
View all reports →Affected Software
gazelle cms
Vulnerable Versions:
1.0
Timeline
Official Publish:
September 11th, 2009
Last Modified:
August 7th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.