5.8
CVE-2007-4098
- EPSS 1.9%
- Veröffentlicht 30.07.2007 21:17:00
- Zuletzt bearbeitet 16.06.2026 22:43:23
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Tor before 0.1.2.15 does not properly distinguish "streamids from different exits," which might allow remote attackers with control over Tor routers to inject cells into arbitrary streams.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.9% | 0.769 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:P
|
http://archives.seul.org/or/announce/Jul-2007/msg00000.html
http://secunia.com/advisories/26140
http://www.securityfocus.com/bid/25035
http://www.vupen.com/english/advisories/2007/2634
http://osvdb.org/46970