{ "id": "CVE-2007-2638", "sourceIdentifier": "cve@mitre.org", "published": "2007-05-13T23:19:00.000", "lastModified": "2018-10-16T16:44:46.947", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "eFileCabinet 3.3 allows remote attackers to bypass authentication and access restricted portions of the interface via an invalid filecabinetnumber, which can be leveraged to obtain sensitive information or create new data structures." }, { "lang": "es", "value": "eFileCabinet 3.3 permite a atacantes remotos evitar la validaci\u00f3n y porciones acceso restringido de la interfaz a trav\u00e9s de un filecabinetnumber inv\u00e1lido, lo cu\u00e1l podr\u00eda ser utilizado para obtener informaci\u00f3n sensible o crear nuevas estructuras de datos." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "availabilityImpact": "COMPLETE", "baseScore": 10.0 }, "baseSeverity": "HIGH", "exploitabilityScore": 10.0, "impactScore": 10.0, "acInsufInfo": false, "obtainAllPrivilege": true, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-Other" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:efilecabinet:efilecabinet:*:*:*:*:*:*:*:*", "versionEndIncluding": "3.3", "matchCriteriaId": "66003C19-7750-47FD-AE9C-86D11744E819" } ] } ] } ], "references": [ { "url": "http://securityreason.com/securityalert/2696", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/archive/1/468314/100/0/threaded", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/bid/23944", "source": "cve@mitre.org" }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34251", "source": "cve@mitre.org" } ] }