4
CVE-2007-3617
- EPSS 0.96%
- Veröffentlicht 06.07.2007 19:30:00
- Zuletzt bearbeitet 16.06.2026 22:42:23
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The report module in vtiger CRM before 5.0.3 does not properly apply security rules, which allows remote authenticated users to read arbitrary private module entries.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Vtiger ≫ Vtiger Crm Version <= 5.0.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.96% | 0.57 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|
http://trac.vtiger.com/cgi-bin/trac.cgi/report/9
http://osvdb.org/45804
http://trac.vtiger.com/cgi-bin/trac.cgi/ticket/2692