CVE-2007-6197
Published Dec 1, 2007
Last updated 6 years ago
Overview
- Description
- The Plumtree portal in BEA AquaLogic Interaction 5.0.2 through 5.0.4 and 6.0.1.218452 allows remote attackers to obtain version numbers and internal hostnames by reading comments in the HTML source of any page.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:bea:aqualogic_interaction:5.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55CF2586-AA51-4B8F-B08F-CB93E61B7A7E" }, { "criteria": "cpe:2.3:a:bea:aqualogic_interaction:5.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B2A5F32-A22D-4279-9204-4359370EFA53" }, { "criteria": "cpe:2.3:a:bea:aqualogic_interaction:5.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3E0D34F4-C045-49EA-9858-6E8DA0756071" }, { "criteria": "cpe:2.3:a:bea:aqualogic_interaction:6.0.1.218452:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6609AAFA-EAA8-460C-BADB-2E175611CEDF" } ], "operator": "OR" } ] } ]