Back to Database
Status published
Medium
CVE-2009-3452
WebCoreModule.ashx in RADactive I-Load before 2008.2.5.0 allows remote attackers to...
Vulnerability Description
WebCoreModule.ashx in RADactive I-Load before 2008.2.5.0 allows remote attackers to obtain sensitive information via unspecified requests that trigger responses containing the saved-image folder pathname.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2009-3452
Credits & Attribution
No credits recorded in the NVD database.
References
More from radactive
View All →CVE-2009-3451
Directory traversal vulnerability in WebCoreModule.ashx in RADactive I-Load before 2008.2.5.0...
Medium
5
CVE-2009-3450
Multiple cross-site scripting (XSS) vulnerabilities in WebCoreModule.ashx in RADactive I-Load...
Medium
4.3
CVE-2009-3447
Unrestricted file upload vulnerability in RADactive I-Load before 2008.2.5.0 allows...
Medium
6.8
Affected Vendor
radactive
View all reports →Affected Software
i-load
Vulnerable Versions:
0, 1.6.3, 1.6.3.1, 1.6.3.2, 1.6.3.3, 1.7.0.0, 1.7.0.1, 1.7.0.2, 1.7.0.3, 1.7.0.4, 1.7.0.5, 1.7.0.6, 1.7.0.7, 1.7.0.8, 1.7.0.9, 1.7.0.10, 1.7.0.11, 1.7.0.12, 1.7.5.0, 1.7.5.1, 1.7.5.2, 1.7.6.0, 1.7.6.1, 1.7.7.0, 1.7.7.1, 1.7.7.2, 1.7.7.3, 1.7.7.4, 1.7.7.5, 1.7.7.6, 1.7.7.8, 1.7.7.9, 1.7.7.11, 2008.1.0.0, 2008.1.0.1, 2008.1.0.2, 2008.1.1.0, 2008.1.2.0, 2008.1.2.1, 2008.1.3.0, 2008.2.1.0, 2008.2.1.1, 2008.2.2.0, 2008.2.3.0, 2008.2.3.1, 2008.2.3.2
Timeline
Official Publish:
September 29th, 2009
Last Modified:
August 7th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.