Unrated severityNVD Advisory· Published Dec 31, 2004· Updated Apr 16, 2026
CVE-2004-1828
CVE-2004-1828
Description
Vcard 2.9 and possibly other versions does not require authorization to run uninstall.php, which could allow remote attackers to uninstall Vcard and delete database tables via a direct request to uninstall.php.
Affected products
2cpe:2.3:a:belchior_foundry:vcard:2.8:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:belchior_foundry:vcard:2.8:*:*:*:*:*:*:*
- cpe:2.3:a:belchior_foundry:vcard:2.9:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.