Lucene search

K
cveMitreCVE-2007-0516
HistoryJan 26, 2007 - 1:28 a.m.

CVE-2007-0516

2007-01-2601:28:00
mitre
web.nvd.nist.gov
29
yana framework
guestbook
profile modification
remote authentication
cve-2007-0516
nvd

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:N/I:P/A:P

AI Score

6.2

Confidence

Low

EPSS

0.001

Percentile

49.7%

Yana Framework before 2.8.5a allows remote authenticated users with permissions to modify a guestbook profile to modify or delete arbitrary guestbook profiles via unspecified vectors. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

Affected configurations

Nvd
Node
yana_frameworkyana_frameworkRange2.8.4a
OR
yana_frameworkyana_frameworkMatch2.8
OR
yana_frameworkyana_frameworkMatch2.8.1
OR
yana_frameworkyana_frameworkMatch2.8.2a
OR
yana_frameworkyana_frameworkMatch2.8.3a
VendorProductVersionCPE
yana_frameworkyana_framework*cpe:2.3:a:yana_framework:yana_framework:*:*:*:*:*:*:*:*
yana_frameworkyana_framework2.8cpe:2.3:a:yana_framework:yana_framework:2.8:*:*:*:*:*:*:*
yana_frameworkyana_framework2.8.1cpe:2.3:a:yana_framework:yana_framework:2.8.1:*:*:*:*:*:*:*
yana_frameworkyana_framework2.8.2acpe:2.3:a:yana_framework:yana_framework:2.8.2a:*:*:*:*:*:*:*
yana_frameworkyana_framework2.8.3acpe:2.3:a:yana_framework:yana_framework:2.8.3a:*:*:*:*:*:*:*

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:N/I:P/A:P

AI Score

6.2

Confidence

Low

EPSS

0.001

Percentile

49.7%

Related for CVE-2007-0516