7.8

CVE-2007-0164

Exploit
Camouflage 1.2.1 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replacing certain bytes of the JPEG image with alternate password information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CamouflageCamouflage Version1.2.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.99% 0.78
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:C/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://homepage.mac.com/adonismac/Advisory/steg/camouflage.html
Vendor Advisory
Exploit
http://osvdb.org/32651
http://secunia.com/advisories/23578
Vendor Advisory
http://www.securityfocus.com/archive/1/456541/100/0/threaded
http://www.securityfocus.com/bid/21939
https://exchange.xforce.ibmcloud.com/vulnerabilities/31375