Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-1800

EPSS 0.89% · P76
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-1800

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cisco Secure ACS does not require authentication when Cisco Trust Agent (CTA) transmits posture information, which might allow remote attackers to gain network access via a spoofed Network Endpoint Assessment posture, aka "NACATTACK." NOTE: this attack might be limited to authenticated users and devices.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Cisco Secure ACS 输入信息验证和权限提升漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
当Cisco Trust Agent (CTA)发送posture信息时,Cisco Secure ACS没有要求对其进行认证,这使得远程攻击者可以借助一个受骗的Network Endpoint Assessment posture,获得网络访问权限。又称"NACATTACK"。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-1800

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-1800

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-04-02 · 35 CVEs total

CVE-2006-5820AOL SB.SuperBuddy.1 ActiveX控件远程代码执行漏洞
CVE-2007-1819HP Mercury Quality Center ActiveX控件远程栈溢出漏洞
CVE-2007-1820Nortel Networks CallPilot and Meridian Mail voicemail 输入验证漏洞
CVE-2007-1821Sprint Nextel Sprint voice mail输入验证漏洞
CVE-2007-1822Alcatel-Lucent voice mail输入验证漏洞
CVE-2007-1823T-Mobile voice mail权限许可和访问控制漏洞
CVE-2007-1824PHP php_stream_filter_create()函数缓冲区溢出漏洞
CVE-2007-1825PHP imap_mail_compose()函数缓冲区溢出漏洞
CVE-2007-1826Cisco Unified CallManager和Unified Server IPSec Manager拒绝服务
CVE-2007-1818Forum picture and META tags 'MOD_forum_fields_parse.php' PHP远程文件包含漏洞
CVE-2007-1793Symantec Norton个人防火墙SPBBCDrv驱动本地拒绝服务漏洞
CVE-2007-1794Sun Solaris Mozilla Javascript engine 任意代码执行漏洞
CVE-2007-1795JCCorp URLShrink Email Parameter 远程代码执行漏洞
CVE-2007-1796JCcorp URLshrink 多个未明漏洞
CVE-2007-1797ImageMagic多个整数溢出漏洞
CVE-2007-1798IBM AIX 缓冲区溢出漏洞
CVE-2007-1799KTorrent远程目录遍历漏洞
CVE-2007-1810XOOPS KShop 'product_details.php' SQL注入漏洞
CVE-2007-1802MailDwarf 跨站脚本攻击漏洞
CVE-2007-1803MailDwarf 未明漏洞

Showing top 20 of 35 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2007-1800

No comments yet


Leave a comment