Vulnerabilities > CVE-2007-6379 - Configuration vulnerability in Badblue

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
badblue
CWE-16
exploit available

Summary

BadBlue 2.72b and earlier allows remote attackers to obtain sensitive information via an invalid browse parameter, which reveals the installation path in an error message.

Vulnerable Configurations

Part Description Count
Application
Badblue
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionBadBlue. CVE-2007-6377,CVE-2007-6378,CVE-2007-6379. Remote exploit for windows platform
idEDB-ID:4715
last seen2016-01-31
modified2007-12-10
published2007-12-10
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/4715/
titlebadblue <= 2.72b - Multiple Vulnerabilities

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/62071/badblue-overflow.txt
idPACKETSTORM:62071
last seen2016-12-05
published2007-12-25
reporteracaro
sourcehttps://packetstormsecurity.com/files/62071/badblue-overflow.txt.html
titlebadblue-overflow.txt

Seebug

bulletinFamilyexploit
descriptionNo description provided by source.
idSSV:7705
last seen2017-11-19
modified2007-12-25
published2007-12-25
reporterRoot
sourcehttps://www.seebug.org/vuldb/ssvid-7705
titleBadBlue 2.72 PassThru Remote Buffer Overflow Exploit