Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-0664

EPSS 3.01% · P87
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-0664

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
thttpd before 2.25b-r6 in Gentoo Linux is started from the system root directory (/) by the Gentoo baselayout 1.12.6 package, which allows remote attackers to read arbitrary files.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Gentoo Linux Acme Thttpd文件访问信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Gentoo Linux是一个基于源码包的Linux系统。 Gentoo的www-servers/thttpd软件包实现上存在漏洞,远程攻击者可能利用此漏洞非授权获取敏感信息。 如果在新的Gentoo baselayout中使用start-stop-daemon命令的话,就会导致thttpd在启动时将文档根设置为系统的根目录"/",这允许非授权用户远程访问thttpd进程可读的所有系统文件。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-0664

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-0664

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-02-02 · 9 CVEs total

CVE-2007-0665Ipswitch WS_FTP 2007 SCP处理格式串处理漏洞
CVE-2007-0666pswitch WS_FTP Server FTP站点管理页字符串格式化漏洞
CVE-2007-0667LedgerSMB和QL-Ledger重定向函数 远程代码执行漏洞
CVE-2007-0668Sun Solaris环回文件系统本地拒绝服务漏洞
CVE-2007-0456Wireshark LLT协议处理模块拒绝服务漏洞
CVE-2007-0457Wireshark IEEE 802.11协议处理模块拒绝服务漏洞
CVE-2007-0458Wireshark HTTP协议处理模块拒绝服务漏洞
CVE-2007-0459Wireshark TCP协议处理模块拒绝服务漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2007-0664

No comments yet


Leave a comment