2024-07-14 02:06:08 +00:00

113 lines
3.3 KiB
JSON

{
"id": "CVE-2007-1196",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-03-02T21:18:00.000",
"lastModified": "2017-07-29T01:30:40.283",
"vulnStatus": "Modified",
"cveTags": [],
"evaluatorSolution": "Upgrade to Citrix Presentation Server Client for Windows version 10.0:\r\nhttp://www.citrix.com/English/SS/downloads/downloads.asp?dID=2755 \r\n",
"descriptions": [
{
"lang": "en",
"value": "Unspecified vulnerability in Citrix Presentation Server Client for Windows before 10.0 allows remote web sites to execute arbitrary code via unspecified vectors, related to the implementation of ICA connectivity through proxy servers."
},
{
"lang": "es",
"value": "Vulnerabilidad no especificada en Citrix Presentation Server Client para Windows anterior a 10.0 permiet a sitios web remotos ejecutar c\u00f3digo de su elecci\u00f3n a trav\u00e9s de vectores no especificados, relacionado con la implementaci\u00f3n de conectividad ICA a trav\u00e9s de servidores proxy."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 9.3
},
"baseSeverity": "HIGH",
"exploitabilityScore": 8.6,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": true,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:citrix:presentation_server_client:*:*:windows:*:*:*:*:*",
"versionEndIncluding": "9.200",
"matchCriteriaId": "A4D7FFE0-939F-4A9A-8FA2-B9AA812E87A7"
}
]
}
]
}
],
"references": [
{
"url": "http://osvdb.org/33833",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/24350",
"source": "cve@mitre.org"
},
{
"url": "http://support.citrix.com/article/CTX112589",
"source": "cve@mitre.org"
},
{
"url": "http://www.kb.cert.org/vuls/id/798364",
"source": "cve@mitre.org",
"tags": [
"US Government Resource"
]
},
{
"url": "http://www.securityfocus.com/bid/22762",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id?1017712",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/0784",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/32754",
"source": "cve@mitre.org"
}
]
}