Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-3012

EPSS 0.54% · P68
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-3012

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The web interface in Fujitsu-Siemens Computers PRIMERGY BX300 Switch Blade allows remote attackers to obtain sensitive information by canceling the authentication dialog when accessing a sub-page, which still displays the form field contents of the sub-page, as demonstrated using (1) config/ip_management.htm and (2) config/snmp_config.htm.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Fujitsu PRIMERGY BX300刀片服务器信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
PRIMERGY BX300是非常适用于运算密集应用程序的刀片服务器。 PRIMERGY BX300的Web界面在处理访问认证时存在漏洞,远程攻击者可能利用此漏洞获取服务器相关的敏感信息。 PRIMERGY BX300的Web接口是可以通过HTTP访问的,在访问时默认会要求HTTP Auth认证,如果在浏览器中取消了认证对话框,就会显示空白页面,页面的HTML代码会泄露一些到Web界面子页面的超级链接。如果在浏览器中直接访问了这些链接,会再次出现认证对话,但点击"取消"后仍会显示页面和表单字段中的数据。也
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-3012

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-3012

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-07-05 · 33 CVEs total

CVE-2007-3580PHPIDS 远程注入漏洞
CVE-2007-3571Apache web 远程攻击漏洞
CVE-2007-3570Linux Access Gateway 远程攻击漏洞
CVE-2007-3569Oliver 多个跨站脚本攻击漏洞
CVE-2007-3568ImLib库_LoadBMP函数拒绝服务漏洞
CVE-2007-3567MySQLDumper绕过Apache访问控制认证漏洞
CVE-2007-3011Fujitsu ServerView DBASCIIAccess脚本远程代码执行漏洞
CVE-1999-1591Microsoft VisualInterDev 6.0 - IIS4无认证管理漏洞
CVE-2007-3588VBZooM SQL注入漏洞
CVE-2007-3587MyCMS 多个输入验证漏洞
CVE-2007-3586MyCMS 多个输入验证漏洞
CVE-2007-3585MyCMS 多个输入验证漏洞
CVE-2007-3584Postnuke PNphpBB2 SQL注入漏洞
CVE-2007-3583Girlserv Ads Details_News.PHP SQL注入漏洞
CVE-2007-3582SuperCali Index.PHP SQL注入漏洞
CVE-2007-3581Jedox Palo 远程欺骗网络漏洞
CVE-2007-3589B1GBB id参数多个SQL注入漏洞
CVE-2007-3579PHPIDS 远程注入漏洞
CVE-2007-3578PHPIDS 远程注入漏洞
CVE-2007-3577PHPIDS 远程攻击漏洞

Showing top 20 of 33 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2007-3012

No comments yet


Leave a comment