René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

98 lines
3.2 KiB
JSON

{
"id": "CVE-2007-3201",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-06-12T23:30:00.000",
"lastModified": "2018-10-16T16:47:52.607",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Visual truncation vulnerability in Windows Privacy Tray (WinPT) 1.2.0 allows user-assisted remote attackers to install a key listed under the wrong user ID, and possibly cause the user to encrypt a victim's correspondence with this attacker-supplied key, via a key ID composed of the attacker's user ID, space characters, an invalid WinPT message, additional space characters, and the victim's user ID."
},
{
"lang": "es",
"value": "Vulnerabilidad de truncamiento visual en Windows Privacy Tray (WinPT) 1.2.0 permite a atacantes remotos con la intervenci\u00f3n del usuario instalar una clave listada bajo un ID de usuario incorrecto, y posiblemente provocar que el usuario encripte la correspondencia de la victima con la clave suministrada por el atacante, mediante una clave ID compuesta por el ID del usuario atacante, caracteres de espacio, un mensaje WinPT invalido, caracteres de espacio adicionales y el ID del usuario victima."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:C/A:N",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "NONE",
"baseScore": 7.1
},
"baseSeverity": "HIGH",
"exploitabilityScore": 8.6,
"impactScore": 6.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:winpt:winpt:1.2.0:*:*:*:*:*:*:*",
"matchCriteriaId": "EBF6C00C-0039-40C1-9876-CA7ABE86ACDA"
}
]
}
]
}
],
"references": [
{
"url": "http://securityreason.com/securityalert/2791",
"source": "cve@mitre.org"
},
{
"url": "http://wald.intevation.org/tracker/index.php?func=detail&aid=327&group_id=14&atid=138",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/471045/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/24412",
"source": "cve@mitre.org",
"tags": [
"Exploit"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34813",
"source": "cve@mitre.org"
}
]
}