Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2007-2229 | First vendor Publication | 2007-06-12 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:L/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 7.2 | Attack Range | Local |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 3.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Microsoft Windows Vista uses insecure default permissions for unspecified "local user information data stores" in the registry and the file system, which allows local users to obtain sensitive information such as administrative passwords, aka "Permissive User Information Store ACLs Information Disclosure Vulnerability." |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2229 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-264 | Permissions, Privileges, and Access Controls |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:1529 | |||
Oval ID: | oval:org.mitre.oval:def:1529 | ||
Title: | Windows Vista Information Disclosure Vulnerability | ||
Description: | Microsoft Windows Vista uses insecure default permissions for unspecified "local user information data stores" in the registry and the file system, which allows local users to obtain sensitive information such as administrative passwords, aka "Permissive User Information Store ACLs Information Disclosure Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2007-2229 | Version: | 8 |
Platform(s): | Microsoft Windows Vista | Product(s): | |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Os | 2 |
OpenVAS Exploits
Date | Description |
---|---|
2011-01-14 | Name : Microsoft Windows Vista Information Disclosure Vulnerability (931213) File : nvt/gb_ms07-032.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
35344 | Microsoft Windows Vista Local User Information Data Stores Information Disclo... |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2007-06-12 | Name : A local user can access sensitive information. File : smb_nt_ms07-032.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:17:07 |
|
2024-11-28 12:12:07 |
|
2021-05-04 12:05:40 |
|
2021-04-22 01:06:15 |
|
2020-05-23 00:19:38 |
|
2019-03-19 12:02:25 |
|
2018-10-16 21:19:55 |
|
2018-10-13 00:22:37 |
|
2017-10-11 09:23:56 |
|
2016-06-28 16:24:18 |
|
2016-04-26 16:02:24 |
|
2014-02-17 10:39:56 |
|
2013-05-11 10:23:54 |
|
2012-11-07 00:14:40 |
|