« Volver al listado

CVE-2007-3804

Estado: ModificadaMedia (5)—

The AntiVirus engine in the HTTP-ALG in Clavister CorePlus before 8.81.00 and 8.80.03 might allow remote attackers to bypass scanning via small files.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2007-3804",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2007-07-16T23:30:00.000",
  "references": [
    {
      "url": "http://osvdb.org/37973",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/25957",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.clavister.com/releasenotes/CorePlus_Release_Notes_8_80_04.pdf",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.clavister.com/releasenotes/CorePlus_Release_Notes_8_81_01.pdf",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/37973",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/25957",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.clavister.com/releasenotes/CorePlus_Release_Notes_8_80_04.pdf",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.clavister.com/releasenotes/CorePlus_Release_Notes_8_81_01.pdf",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-264"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The AntiVirus engine in the HTTP-ALG in Clavister CorePlus before 8.81.00 and 8.80.03 might allow remote attackers to bypass scanning via small files."
    },
    {
      "lang": "es",
      "value": "La ingenieria de AntiVirus en HTTP-ALG en Clavister CorePlus anterior a 8.81.00 y 8.80.03 permitiría a atacantes remotos evitar el escaneo a través de archivos pequeños."
    }
  ],
  "lastModified": "2026-06-16T22:42:45.837",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:clavister:clavister_coreplus:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2675391A-B6B4-4A97-BF69-B62F8868BA73",
              "versionEndIncluding": "8.80.03"
            },
            {
              "criteria": "cpe:2.3:a:clavister:clavister_coreplus:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5A172307-78BD-4860-9CE4-E940F4BCE760",
              "versionEndIncluding": "8.81.00"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}