4.3
CVSSv2

CVE-2007-4461

Published: 21/08/2007 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

NuFW 2.2.3, and certain other versions after 2.0, allows remote malicious users to bypass time-based packet filtering rules via certain "out of period" choices of packet transmission time.

Vulnerable Product Search on Vulmon Subscribe to Product

nufw nufw 2.2.3

Vendor Advisories

Debian Bug report logs - #439227 CVE-2007-4461: bypass filtering due to out of period transmission time Package: nufw; Maintainer for nufw is Pierre Chifflier <pollux@debianorg>; Source for nufw is src:nufw (PTS, buildd, popcon) Reported by: Thijs Kinkhorst <thijs@debianorg> Date: Thu, 23 Aug 2007 12:30:03 UTC Sev ...