5
CVSSv2

CVE-2008-7138

Published: 01/09/2009 Updated: 11/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Manager in Eye-Fi 1.1.2 generates predictable snonce values based on the time of day, which allows remote malicious users to bypass authentication and upload arbitrary images by guessing the snonce.

Vulnerable Product Search on Vulmon Subscribe to Product

eye.fi eye-fi manager 1.1.2