CVE-2009-0962
Summary
| CVE | CVE-2009-0962 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2009-03-19 00:30:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Unspecified vulnerability in Futomi's CGI Cafe MP Form Mail CGI eCommerce 1.3.0 and earlier, and CGI Professional 3.2.2 and earlier, allows remote attackers to gain administrative privileges via unknown attack vectors. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-noinfo | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Futomi | Mp Form Mail Cgi | All | - | ecommerce | All |
| Application | Futomi | Mp Form Mail Cgi | All | - | pro | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| osvdb.org/52527 | af854a3a-2127-422b-91ae-364da2661108 | osvdb.org | |
| Futomi's CGI Cafe MP Form Mail CGI Unspecified Security Bypass Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000014.html | af854a3a-2127-422b-91ae-364da2661108 | jvndb.jvn.jp | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| JVN#84899898: MP Form Mail CGI vulnerability allows third party to gain administrative privileges | af854a3a-2127-422b-91ae-364da2661108 | jvn.jp | |
| MP Form Mail CGI Professional版・eCommerce版(旧バージョン) 新バージョンの提供について- futomi's CGI Cafe | af854a3a-2127-422b-91ae-364da2661108 | www.futomi.com | Vendor Advisory |
| Futomi's CGI Cafe MP Form Mail CGI Security Bypass - Secunia Advisories - Vulnerability Information - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.