Versio.io

CVE-2007-5461

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 14-10-2007 02:00
Last modified: - 14-10-2007 02:00
Total changes: - 11

Description

CVE-2007-5461 Absolute path traversal Apache Tomcat WEBDAV

Common Vulnerability Scoring System (CVSS)

-
-
Attack complexity
-
Attack vector
-
Availability
-
Confidentiality
-
Integrity
-
Privileges required
-
Scope
-
User interaction
Base score
Exploitability score
Impact score
 

Verification logic

OR
AND
product=glassfish-javamail-0 AND versionEndExcluding=1.4.0-0jpp.ep1.8
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-1 AND versionEndExcluding=3.2.4-1.SP1_CP02.0jpp.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-annotations-0 AND versionEndExcluding=3.2.1-1.patch02.1jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-entitymanager-0 AND versionEndExcluding=3.2.1-1jpp.ep1.6.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hsqldb-1 AND versionEndExcluding=1.8.0.8-2.patch01.1jpp.ep1.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jacorb-0 AND versionEndExcluding=2.3.0-1jpp.ep1.4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-aop-0 AND versionEndExcluding=1.5.5-1.CP01.0jpp.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossas-0 AND versionEndExcluding=4.2.0-3.GA_CP02.ep1.3.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-cache-0 AND versionEndExcluding=1.4.1-4.SP8_CP01.1jpp.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-remoting-0 AND versionEndExcluding=2.2.2-3.SP4.0jpp.ep1.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-seam-0 AND versionEndExcluding=1.2.1-1.ep1.3.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossweb-0 AND versionEndExcluding=2.0.0-3.CP05.0jpp.ep1.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossws-jboss42-0 AND versionEndExcluding=1.2.1-0jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jcommon-0 AND versionEndExcluding=1.0.12-1jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jfreechart-0 AND versionEndExcluding=1.0.9-1jpp.ep1.2.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jgroups-1 AND versionEndExcluding=2.4.1-1.SP4.0jpp.ep1.2
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=rh-eap-docs-0 AND versionEndExcluding=4.2.0-3.GA_CP02.ep1.1.el4
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-0 AND versionEndExcluding=3.2.4-1.SP1_CP02.0jpp.ep1.1.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=hibernate3-annotations-0 AND versionEndExcluding=3.2.1-1.patch02.1jpp.ep1.2.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jacorb-0 AND versionEndExcluding=2.3.0-1jpp.ep1.5.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-aop-0 AND versionEndExcluding=1.5.5-1.CP01.0jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossas-0 AND versionEndExcluding=4.2.0-4.GA_CP02.ep1.3.el5.3
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-cache-0 AND versionEndExcluding=1.4.1-4.SP8_CP01.1jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-remoting-0 AND versionEndExcluding=2.2.2-3.SP4.0jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jboss-seam-0 AND versionEndExcluding=1.2.1-1.ep1.3.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jbossweb-0 AND versionEndExcluding=2.0.0-3.CP05.0jpp.ep1.1.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jcommon-0 AND versionEndExcluding=1.0.12-1jpp.ep1.2.el5
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=jfreechart-0 AND versionEndExcluding=1.0.9-1jpp.ep1.2.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=rh-eap-docs-0 AND versionEndExcluding=4.2.0-3.GA_CP02.ep1.1.el5.1
vendor=Red Hat Enterprise Linux AND product=jboss_enterprise_application_platform AND version=4.2.0
AND
product=ant-0 AND versionEndExcluding=1.6.5-1jpp_1rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=avalon-logkit-0 AND versionEndExcluding=1.2-2jpp_4rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=axis-0 AND versionEndExcluding=1.2.1-1jpp_3rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=classpathx-jaf-0 AND versionEndExcluding=1.0-2jpp_6rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=classpathx-mail-0 AND versionEndExcluding=1.1.1-2jpp_8rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=geronimo-specs-0 AND versionEndExcluding=1.0-0.M4.1jpp_10rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=jakarta-commons-modeler-0 AND versionEndExcluding=2.0-3jpp_2rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=log4j-0 AND versionEndExcluding=1.2.12-1jpp_1rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=mx4j-1 AND versionEndExcluding=3.0.1-1jpp_4rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=pcsc-lite-0 AND versionEndExcluding=1.3.3-3.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=rhpki-ca-0 AND versionEndExcluding=7.3.0-20.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=rhpki-java-tools-0 AND versionEndExcluding=7.3.0-10.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=rhpki-kra-0 AND versionEndExcluding=7.3.0-14.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=rhpki-manage-0 AND versionEndExcluding=7.3.0-19.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=rhpki-native-tools-0 AND versionEndExcluding=7.3.0-6.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=rhpki-ocsp-0 AND versionEndExcluding=7.3.0-13.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=rhpki-tks-0 AND versionEndExcluding=7.3.0-13.el4
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=Tomcat AND versionEndExcluding=5.5.23-0jpp_4rh.16
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=xerces-j2-0 AND versionEndExcluding=2.7.1-1jpp_1rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=xml-commons-0 AND versionEndExcluding=1.3.02-2jpp_1rh
vendor=Red Hat Enterprise Linux AND product=certificate_system AND version=7.3
AND
product=Tomcat AND versionEndExcluding=5.5.23-0jpp_11rh
vendor=Red Hat Enterprise Linux AND product=rhel_developer_suite AND version=3
AND
product=Tomcat AND versionEndExcluding=5.5.23-0jpp.3.0.3.el5_1
vendor=Red Hat Enterprise Linux AND product=enterprise_linux AND version=5
AND
product=jabberd-0 AND versionEndExcluding=2.0s10-3.38.rhn
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=java-1.4.2-ibm-0 AND versionEndExcluding=1.4.2.10-1jpp.2.el4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=jfreechart-0 AND versionEndExcluding=0.9.20-3.rhn
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=openmotif21-0 AND versionEndExcluding=2.1.30-11.RHEL4.6
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=perl-Crypt-CBC-0 AND versionEndExcluding=2.24-1.el4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-apache-0 AND versionEndExcluding=1.3.27-36.rhn.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-modjk-0 AND versionEndExcluding=1.2.23-2rhn.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-modperl-0 AND versionEndExcluding=1.29-16.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-modssl-0 AND versionEndExcluding=2.8.12-8.rhn.10.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=Tomcat AND versionEndExcluding=5.0.30-0jpp_10rh
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=jabberd-0 AND versionEndExcluding=2.0s10-3.37.rhn
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=java-1.4.2-ibm-0 AND versionEndExcluding=1.4.2.10-1jpp.2.el3
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=jfreechart-0 AND versionEndExcluding=0.9.20-3.rhn
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=openmotif21-0 AND versionEndExcluding=2.1.30-9.RHEL3.8
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=perl-Crypt-CBC-0 AND versionEndExcluding=2.24-1.el3
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-apache-0 AND versionEndExcluding=1.3.27-36.rhn.rhel3
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-modjk-0 AND versionEndExcluding=1.2.23-2rhn.rhel3
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-modperl-0 AND versionEndExcluding=1.29-16.rhel3
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=rhn-modssl-0 AND versionEndExcluding=2.8.12-8.rhn.10.rhel3
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=Tomcat AND versionEndExcluding=5.0.30-0jpp_10rh
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=4.2
AND
product=jabberd-0 AND versionEndExcluding=2.0s10-3.38.rhn
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=java-1.4.2-ibm-0 AND versionEndExcluding=1.4.2.10-1jpp.2.el4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=jfreechart-0 AND versionEndExcluding=0.9.20-3.rhn
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=openmotif21-0 AND versionEndExcluding=2.1.30-11.RHEL4.6
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=perl-Crypt-CBC-0 AND versionEndExcluding=2.24-1.el4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=rhn-apache-0 AND versionEndExcluding=1.3.27-36.rhn.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=rhn-modjk-0 AND versionEndExcluding=1.2.23-2rhn.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=rhn-modperl-0 AND versionEndExcluding=1.29-16.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=rhn-modssl-0 AND versionEndExcluding=2.8.12-8.rhn.10.rhel4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=Tomcat AND versionEndExcluding=5.0.30-0jpp_10rh
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.0
AND
product=jfreechart-0 AND versionEndExcluding=0.9.20-3.rhn
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.1
AND
product=mod_perl-0 AND versionEndExcluding=2.0.2-12.el4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.1
AND
product=perl-Crypt-CBC-0 AND versionEndExcluding=2.24-1.el4
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.1
AND
product=rhn-web-0 AND versionEndExcluding=5.1.1-7
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.1
AND
product=Tomcat AND versionEndExcluding=5.0.30-0jpp_10rh
vendor=Red Hat Enterprise Linux AND product=network_satellite AND version=5.1
AND
product=Tomcat AND versionEndExcluding=5.5.23-0jpp_4rh.9
vendor=Red Hat Enterprise Linux AND product=rhel_application_server AND version=2
 

Reference

 


Keywords

REDHAT

 

CVE-2007-5461

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.