3.5
CVE-2007-4427
- EPSS 0.86%
- Veröffentlicht 20.08.2007 19:17:00
- Zuletzt bearbeitet 16.06.2026 22:44:04
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Unspecified vulnerability in the login page redirection logic in the Cache' Server Page (CSP) implementation in InterSystems Cache' 2007.1.0.369.0 and 2007.1.1.420.0 allows remote authenticated users to modify data on a server, related to encoding of certain parameter values by this redirection logic, aka MAK2116.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intersystems ≫ Cache Database Version2007.1.0.369.0
Intersystems ≫ Cache Database Version2007.1.1.420.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.86% | 0.536 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 3.5 | 6.8 | 2.9 |
AV:N/AC:M/Au:S/C:N/I:P/A:N
|
http://groups.google.com/group/intersystems-public-cache/browse_thread/thread/57d7c80dde26fda3/7845e246da5b095b
http://osvdb.org/40178
http://secunia.com/advisories/26541
http://www.intersystems.com/support/cflash/2007announce.html