CVE-2007-3572
Estado: ModificadaAlta (9.3)—
Incomplete blacklist vulnerability in cgi-bin/runDiagnostics.cgi in the web interface on the Yoggie Pico and Pico Pro allows remote attackers to execute arbitrary commands via shell metacharacters in the param parameter, as demonstrated by URL encoded "`" (backtick) characters (%60 sequences).
CVSS
- Versión: 2.0
- Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C
- Puntuación base: 9.3
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 8.38%
- Percentil entre todas las CVEs puntuadas: 95
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (2)
CWE
- NVD-CWE-Other
Referencias
- http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0020.html
- http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0092.html
- http://osvdb.org/37808
- http://secunia.com/advisories/25902
- http://www.securityfocus.com/bid/24743
- http://www.vupen.com/english/advisories/2007/2417
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35208
- http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0020.html
- http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0092.html
- http://osvdb.org/37808
- http://secunia.com/advisories/25902
- http://www.securityfocus.com/bid/24743
- http://www.vupen.com/english/advisories/2007/2417
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35208
JSON original (NVD)
Mostrar
{
"id": "CVE-2007-3572",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 9.3,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"authentication": "NONE",
"integrityImpact": "COMPLETE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "COMPLETE"
},
"acInsufInfo": false,
"impactScore": 10,
"baseSeverity": "HIGH",
"obtainAllPrivilege": true,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2007-07-05T20:30:00.000",
"references": [
{
"url": "http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0020.html",
"tags": [
"Exploit"
],
"source": "cve@mitre.org"
},
{
"url": "http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0092.html",
"source": "cve@mitre.org"
},
{
"url": "http://osvdb.org/37808",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/25902",
"tags": [
"Exploit",
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/24743",
"tags": [
"Exploit"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/2417",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35208",
"source": "cve@mitre.org"
},
{
"url": "http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0020.html",
"tags": [
"Exploit"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0092.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://osvdb.org/37808",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/25902",
"tags": [
"Exploit",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/24743",
"tags": [
"Exploit"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2007/2417",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35208",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Incomplete blacklist vulnerability in cgi-bin/runDiagnostics.cgi in the web interface on the Yoggie Pico and Pico Pro allows remote attackers to execute arbitrary commands via shell metacharacters in the param parameter, as demonstrated by URL encoded \"`\" (backtick) characters (%60 sequences)."
},
{
"lang": "es",
"value": "Vulnerabilidad de lista negra incompleta en cgi-bin/runDIagnostics.cgi en la interfaz web de Yoggie Pico y Pico Pro permite a atacantes remotos ejecutar comandos de su elección mediante metacaracteres de línea de comandos en el parámetro param, como se ha demostrado con caracteres \"`\" (tilde invertida) codificados en formato URL (secuencias %60)."
}
],
"lastModified": "2026-06-16T22:42:18.447",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:yoggie:pico:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "537FAB08-D943-4C94-B6B2-7634CE212DD6"
},
{
"criteria": "cpe:2.3:a:yoggie:pico_pro:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0192D1AF-43BB-4F9E-9F0E-E812DCAE5512"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org",
"evaluatorSolution": "The vendor has addressed this issue through the release of the following product update: http://www.yoggie.com/supportcase.asp \r\n"
}