Vulnerabilities > CVE-2007-3191 - Unspecified vulnerability in Jffnms Just for FUN Network Management System 0.8.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Just For Fun Network Management System (JFFNMS) 0.8.3 allows remote attackers to obtain configuration information via a direct request to admin/adm/test.php, which calls the phpinfo function.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | JFFNMS 0.8.3 admin/adm/test.php PHP Information Disclosure. CVE-2007-3191. Webapps exploit for php platform |
id | EDB-ID:30173 |
last seen | 2016-02-03 |
modified | 2007-06-11 |
published | 2007-06-11 |
reporter | Tim Brown |
source | https://www.exploit-db.com/download/30173/ |
title | JFFNms 0.8.3 admin/adm/test.php PHP Information Disclosure |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-1374.NASL |
description | Several vulnerabilities have been discovered in jffnms, a web-based Network Management System for IP networks. The Common Vulnerabilities and Exposures project identifies the following problems : - CVE-2007-3189 Cross-site scripting (XSS) vulnerability in auth.php, which allows a remote attacker to inject arbitrary web script or HTML via the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 26035 |
published | 2007-09-14 |
reporter | This script is Copyright (C) 2007-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/26035 |
title | Debian DSA-1374-1 : jffnms - several vulnerabilities |
code |
|
References
- http://marc.info/?l=full-disclosure&m=118151087109711&w=2
- http://marc.info/?l=full-disclosure&m=118151087109711&w=2
- http://osvdb.org/37167
- http://osvdb.org/37167
- http://secunia.com/advisories/25587
- http://secunia.com/advisories/25587
- http://secunia.com/advisories/26769
- http://secunia.com/advisories/26769
- http://www.debian.org/security/2007/dsa-1374
- http://www.debian.org/security/2007/dsa-1374
- http://www.securityfocus.com/archive/1/471039/100/0/threaded
- http://www.securityfocus.com/archive/1/471039/100/0/threaded
- http://www.securityfocus.com/bid/24414
- http://www.securityfocus.com/bid/24414