{ "CVE_data_meta" : { "ASSIGNER" : "cve@mitre.org", "ID" : "CVE-2007-4529", "STATE" : "PUBLIC" }, "affects" : { "vendor" : { "vendor_data" : [ { "product" : { "product_data" : [ { "product_name" : "n/a", "version" : { "version_data" : [ { "version_value" : "n/a" } ] } } ] }, "vendor_name" : "n/a" } ] } }, "data_format" : "MITRE", "data_type" : "CVE", "data_version" : "4.0", "description" : { "description_data" : [ { "lang" : "eng", "value" : "The WebAdmin interface in TeamSpeak Server 2.0.20.1 allows remote authenticated users with the ServerAdmin flag to assign Registered users certain privileges, resulting in a privilege set that extends beyond that ServerAdmin's own servers, as demonstrated by the (1) AdminAddServer, (2) AdminDeleteServer, (3) AdminStartServer, and (4) AdminStopServer privileges; and administration of arbitrary virtual servers via a request to a .tscmd URI with a modified serverid parameter, as demonstrated by (a) add_server.tscmd, (b) ask_delete_server.tscmd, (c) start_server.tscmd, and (d) stop_server.tscmd." } ] }, "problemtype" : { "problemtype_data" : [ { "description" : [ { "lang" : "eng", "value" : "n/a" } ] } ] }, "references" : { "reference_data" : [ { "name" : "20070823 Re: TeamSpeak 2 Server Vulnerabilities?", "refsource" : "BUGTRAQ", "url" : "http://www.securityfocus.com/archive/1/477424/100/0/threaded" }, { "name" : "20070511 Teamspeak Server 2.0.20.1 Vulnerabilities", "refsource" : "FULLDISC", "url" : "http://archives.neohapsis.com/archives/fulldisclosure/2007-05/0165.html" }, { "name" : "http://securityvulns.com/Rdocument6.html", "refsource" : "MISC", "url" : "http://securityvulns.com/Rdocument6.html" }, { "name" : "23935", "refsource" : "BID", "url" : "http://www.securityfocus.com/bid/23935" }, { "name" : "36047", "refsource" : "OSVDB", "url" : "http://osvdb.org/36047" }, { "name" : "25242", "refsource" : "SECUNIA", "url" : "http://secunia.com/advisories/25242" }, { "name" : "teamspeak-webadmin-privilege-escalation(34254)", "refsource" : "XF", "url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/34254" } ] } }