7.8
CVE-2007-0163
- EPSS 1.99%
- Veröffentlicht 10.01.2007 00:28:00
- Zuletzt bearbeitet 16.06.2026 22:35:02
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SecureKit Steganography 1.7.1 and 1.8 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replacing the last 20 bytes of the JPEG image with alternate password information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Securekit ≫ Securekit Steganography Version1.7.1
Securekit ≫ Securekit Steganography Version1.8
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.99% | 0.78 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:C/I:N/A:N
|
http://homepage.mac.com/adonismac/Advisory/steg/steganography.html
http://osvdb.org/31244
http://secunia.com/advisories/23639
http://www.securityfocus.com/archive/1/456283/100/0/threaded
http://www.securityfocus.com/archive/1/456519/100/0/threaded
https://exchange.xforce.ibmcloud.com/vulnerabilities/31378