AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-0700

MEDIUM · CVSS 4 EPSS 2.51%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2009-02-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2009-0700
Severity
MEDIUM
CVSS
4
EPSS
2.51%

Original NVD Description

Plunet BusinessManager 4.1 and earlier allows remote authenticated users to bypass access restrictions and (1) read sensitive Customer or Order data via a modified Pfad parameter to pagesUTF8/Sys_DirAnzeige.jsp, or (2) list sensitive Jobs via a direct request to pagesUTF8/auftrag_job.jsp.