eFileCabinet 3.3 allows remote attackers to bypass authentication and access restricted portions of the interface via an invalid filecabinetnumber, which can be leveraged to obtain sensitive information or create new data structures.
References
Configurations
History
21 Nov 2024, 00:31
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/34774 - | |
References | () http://securityreason.com/securityalert/2696 - | |
References | () http://www.securityfocus.com/archive/1/468314/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/23944 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/34251 - |
Information
Published : 2007-05-13 23:19
Updated : 2024-11-21 00:31
NVD link : CVE-2007-2638
Mitre link : CVE-2007-2638
CVE.ORG link : CVE-2007-2638
JSON object : View
Products Affected
efilecabinet
- efilecabinet
CWE