4.3
CVE-2007-4151
- EPSS 1.27%
- Veröffentlicht 03.08.2007 20:17:00
- Zuletzt bearbeitet 16.06.2026 22:43:29
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The Visionsoft Audit on Demand Service (VSAOD) in Visionsoft Audit 12.4.0.0 allows remote attackers to obtain sensitive information via (1) a LOG.ON command, which reveals the logging pathname in the server response; (2) a VER command, which reveals the version number in the server response; and (3) a connection, which reveals the version number in the banner.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Visionsoft ≫ Audit Version12.4.0.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.27% | 0.659 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|
http://www.securityfocus.com/bid/25153
http://osvdb.org/46981
http://osvdb.org/46982
http://osvdb.org/46983
http://www.portcullis.co.uk/uplds/advisories/vapathdisclosure%2006-043.txt
http://www.portcullis.co.uk/uplds/advisories/vaversiondisclosure%2006_046.txt