5
CVSSv2

CVE-2007-5113

Published: 26/09/2007 Updated: 15/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

report.cgi in Google Urchin allows remote malicious users to bypass authentication and obtain sensitive information (web server logs) via certain modified query parameters, as demonstrated using the profile, rid, prefs, n, vid, bd, ed, dt, and gtype parameters, a different vulnerability than CVE-2007-5112.

Vulnerable Product Search on Vulmon Subscribe to Product

roi revolution urchin

Exploits

source: wwwsecurityfocuscom/bid/26037/info Google Urchin is prone to an authentication-bypass vulnerability An attacker can exploit this issue to gain administrative access to the vulnerable application This may lead to other attacks Urchin 5703 is vulnerable to this issue; other versions may also be affected NOTE: Further report ...