Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-4100

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2007-4100
Last Modified 15 Nov 2008 01:55:35
Published 31 Jul 2007 06:17:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2007-4100

Summary

MLDonkey before 2.9.0 does not load certain code from $MLDONKEY/web_infos/ before the network modules become active, which allows remote attackers to bypass the IP blocklist.

Vulnerable Systems

Application

  • Mldonkey 2.8.7


References

BID - 25093

XF - mldonkey-modules-security-bypass(35656)

CONFIRM - http://sourceforge.net/project/shownotes.php?release_id=527976

SECUNIA - 26230

OSVDB - 38626


Last Updated: 27 May 2016 10:45:46