CVE-2008-3737

La!Cooda WIZ <1.4.0 & LacoodaST <2.1.3 - RCE

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in (1) System Consultants La!Cooda WIZ 1.4.0 and earlier and (2) SpaceTag LacoodaST 2.1.3 and earlier allows remote attackers to execute arbitrary PHP scripts, and delete files, read files, and possibly have unknown other impact.

References (6)

Core 6
Core References
Third Party Advisory third-party-advisory x_refsource_jvn
http://jvn.jp/en/jp/JVN53886050/index.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/44594
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/30791
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/31574
Various Sources x_refsource_confirm
http://wiz.syscon.co.jp/Details.htm
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/31582

Scores

EPSS 0.0266
EPSS Percentile 83.8%

Details

CWE
CWE-94
Status published
Products (2)
spacetag/lacoodast < 2.1.3
system_consultants/la_cooda_wiz < 1.4.0
Published Aug 27, 2008
Tracked Since Feb 18, 2026