Lucene search

K
cvelistMitreCVELIST:CVE-2007-3420
HistoryJun 26, 2007 - 11:00 p.m.

CVE-2007-3420

2007-06-2623:00:00
mitre
www.cve.org
1

6.7 Medium

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

73.8%

The Random Cookie Password functionality in the loaduser function in cgi-bin/cgi-lib/subs.pl in web-app.org WebAPP before 0.9.9.7 does not clear the (1) username, (2) password, (3) usertheme, and (4) userlang cookies for unauthorized users, which has unknown impact and remote attack vectors.

6.7 Medium

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

73.8%

Related for CVELIST:CVE-2007-3420