CVE-2007-4609

eyeOS uses predictable checksum values in the checknum parameter for access control, which allows remote attackers to register many accounts via doCreateUser actions, add many eyeBoard messages via addMsg actions, and cause a denial of service or conduct certain unauthorized activities, by guessing valid parameter values.
Configurations

Configuration 1 (hide)

cpe:2.3:o:eyeos_project:eyeos:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-08-31 00:17

Updated : 2024-02-28 11:01


NVD link : CVE-2007-4609

Mitre link : CVE-2007-4609

CVE.ORG link : CVE-2007-4609


JSON object : View

Products Affected

eyeos_project

  • eyeos
CWE
CWE-264

Permissions, Privileges, and Access Controls