CVE-2007-4656
Published Sep 4, 2007
Last updated 11 years ago
Overview
- Description
- backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plaintext command line arguments during FTP uploads, which allows local users to obtain sensitive information by listing the process and its arguments, a different vulnerability than CVE-2007-2766.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 2.1
- Impact score
- 2.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:backup_manager:backup_manager:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6949B83-7F51-4271-8394-AE8134D514DA", "versionEndIncluding": "0.6.2" } ], "operator": "OR" } ] } ]