Lucene search

K
cveMitreCVE-2007-1564
HistoryMar 21, 2007 - 7:19 p.m.

CVE-2007-1564

2007-03-2119:19:00
CWE-200
mitre
web.nvd.nist.gov
25
cve-2007-1564
ftp protocol
konqueror
remote servers
port scan
sensitive information
security vulnerability

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.8

Confidence

Low

EPSS

0.023

Percentile

89.8%

The FTP protocol implementation in Konqueror 3.5.5 allows remote servers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive information by specifying an alternate server address in an FTP PASV response.

Affected configurations

Nvd
Node
kdekonquerorMatch3.5.5
VendorProductVersionCPE
kdekonqueror3.5.5cpe:2.3:a:kde:konqueror:3.5.5:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.8

Confidence

Low

EPSS

0.023

Percentile

89.8%