CVE-2007-4261
Summary
| CVE | CVE-2007-4261 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-08-08 23:17:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | EZPhotoSales 1.9.3 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download (1) a file containing cleartext passwords via a direct request for OnlineViewing/data/galleries.txt, or (2) a file containing username hashes and password hashes via a direct request for OnlineViewing/configuration/config.dat/. NOTE: vector 2 can be leveraged for administrative access because authentication does not require knowledge of cleartext values, but instead uses the username hash in the ConfigLogin parameter and the password hash in the ConfigPassword parameter. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ez Photo Sales | Ez Photo Sales | 1.9.3 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| EZPhotoSales Multiple Input Validation Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Airscanner Mobile Security Advisory | af854a3a-2127-422b-91ae-364da2661108 | www.airscanner.com | |
| EZPhotoSales 1.9.3 Multiple Vulnerabilities - CXSecurity.com | af854a3a-2127-422b-91ae-364da2661108 | securityreason.com | |
| EZPhotoSales Multiple Vulnerabilities - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| InformIT: Security Reference Guide > How Bugs Can Give Attackers Access to Protected Portions of a Web App, Part 2 | af854a3a-2127-422b-91ae-364da2661108 | www.informit.com | |
| InformIT: Security Reference Guide > How Bugs Can Give Attackers Access to Protected Portions of a Web App, Part 1 | af854a3a-2127-422b-91ae-364da2661108 | www.informit.com | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.