4.3

CVE-2007-4151

The Visionsoft Audit on Demand Service (VSAOD) in Visionsoft Audit 12.4.0.0 allows remote attackers to obtain sensitive information via (1) a LOG.ON command, which reveals the logging pathname in the server response; (2) a VER command, which reveals the version number in the server response; and (3) a connection, which reveals the version number in the banner.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
VisionsoftAudit Version12.4.0.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.27% 0.659
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/bid/25153
http://osvdb.org/46981
http://osvdb.org/46982
http://osvdb.org/46983
http://www.portcullis.co.uk/uplds/advisories/vapathdisclosure%2006-043.txt
http://www.portcullis.co.uk/uplds/advisories/vaversiondisclosure%2006_046.txt