Vulnerabilities > CVE-2007-3192 - Unspecified vulnerability in Jffnms Just for FUN Network Management System 0.8.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
admin/setup.php in Just For Fun Network Management System (JFFNMS) 0.8.3 allows remote attackers to read and modify configuration settings via a direct request.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | JFFNMS 0.8.3 admin/setup.php Direct Request Authentication Bypass. CVE-2007-3192. Webapps exploit for php platform |
id | EDB-ID:30174 |
last seen | 2016-02-03 |
modified | 2007-06-11 |
published | 2007-06-11 |
reporter | Tim Brown |
source | https://www.exploit-db.com/download/30174/ |
title | JFFNms 0.8.3 admin/setup.php Direct Request Authentication Bypass |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-1374.NASL |
description | Several vulnerabilities have been discovered in jffnms, a web-based Network Management System for IP networks. The Common Vulnerabilities and Exposures project identifies the following problems : - CVE-2007-3189 Cross-site scripting (XSS) vulnerability in auth.php, which allows a remote attacker to inject arbitrary web script or HTML via the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 26035 |
published | 2007-09-14 |
reporter | This script is Copyright (C) 2007-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/26035 |
title | Debian DSA-1374-1 : jffnms - several vulnerabilities |
code |
|
References
- http://marc.info/?l=full-disclosure&m=118151087109711&w=2
- http://marc.info/?l=full-disclosure&m=118151087109711&w=2
- http://osvdb.org/37168
- http://osvdb.org/37168
- http://secunia.com/advisories/25587
- http://secunia.com/advisories/25587
- http://www.securityfocus.com/archive/1/471039/100/0/threaded
- http://www.securityfocus.com/archive/1/471039/100/0/threaded
- http://www.securityfocus.com/bid/24414
- http://www.securityfocus.com/bid/24414