{"api_version":"1","generated_at":"2026-07-23T13:33:50+00:00","cve":"CVE-2007-0105","urls":{"html":"https://cve.report/CVE-2007-0105","api":"https://cve.report/api/cve/CVE-2007-0105.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-0105","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-0105"},"summary":{"title":"CVE-2007-0105","description":"Stack-based buffer overflow in the CSAdmin service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allows remote attackers to execute arbitrary code via a crafted HTTP GET request.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-01-09 00:28:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.kb.cert.org/vuls/id/744249","name":"http://www.kb.cert.org/vuls/id/744249","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Vulnerability Note VU#744249","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/0068","name":"http://www.vupen.com/english/advisories/2007/0068","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/32642","name":"http://www.osvdb.org/32642","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.securityfocus.com/bid/21900","name":"http://www.securityfocus.com/bid/21900","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cisco Secure Access Control Server Multiple Remote Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://securitytracker.com/id?1017475","name":"http://securitytracker.com/id?1017475","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Cisco Secure Access Control Server CSAdmin and CSRadius Stack Overflows Let Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070105-csacs.shtml","name":"http://www.cisco.com/warp/public/707/cisco-sa-20070105-csacs.shtml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Cisco - Networking, Cloud, and Cybersecurity Solutions","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/23629","name":"http://secunia.com/advisories/23629","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Cisco Secure ACS Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31323","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31323","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-0105","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-0105","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"105","vulnerable":"1","versionEndIncluding":"4.0.1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"cisco","cpe5":"secure_access_control_server","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T12:03:37.131Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"23629","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23629"},{"name":"21900","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/21900"},{"name":"cisco-acs-csadmin-bo(31323)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31323"},{"name":"ADV-2007-0068","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/0068"},{"name":"1017475","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1017475"},{"name":"VU#744249","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/744249"},{"name":"20070105 Multiple Vulnerabilities in Cisco Secure Access Control Server","tags":["vendor-advisory","x_refsource_CISCO","x_transferred"],"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070105-csacs.shtml"},{"name":"32642","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/32642"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-01-05T00:00:00.000Z","descriptions":[{"lang":"en","value":"Stack-based buffer overflow in the CSAdmin service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allows remote attackers to execute arbitrary code via a crafted HTTP GET request."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"23629","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23629"},{"name":"21900","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/21900"},{"name":"cisco-acs-csadmin-bo(31323)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31323"},{"name":"ADV-2007-0068","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/0068"},{"name":"1017475","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1017475"},{"name":"VU#744249","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/744249"},{"name":"20070105 Multiple Vulnerabilities in Cisco Secure Access Control Server","tags":["vendor-advisory","x_refsource_CISCO"],"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070105-csacs.shtml"},{"name":"32642","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/32642"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-0105","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Stack-based buffer overflow in the CSAdmin service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allows remote attackers to execute arbitrary code via a crafted HTTP GET request."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"23629","refsource":"SECUNIA","url":"http://secunia.com/advisories/23629"},{"name":"21900","refsource":"BID","url":"http://www.securityfocus.com/bid/21900"},{"name":"cisco-acs-csadmin-bo(31323)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31323"},{"name":"ADV-2007-0068","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/0068"},{"name":"1017475","refsource":"SECTRACK","url":"http://securitytracker.com/id?1017475"},{"name":"VU#744249","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/744249"},{"name":"20070105 Multiple Vulnerabilities in Cisco Secure Access Control Server","refsource":"CISCO","url":"http://www.cisco.com/warp/public/707/cisco-sa-20070105-csacs.shtml"},{"name":"32642","refsource":"OSVDB","url":"http://www.osvdb.org/32642"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-0105","datePublished":"2007-01-09T00:00:00.000Z","dateReserved":"2007-01-08T00:00:00.000Z","dateUpdated":"2024-08-07T12:03:37.131Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-01-09 00:28:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:cisco:secure_access_control_server:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0.1","matchCriteriaId":"C4659DA0-9EDA-4072-9A8C-E604C08D4993"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"105","Ordinal":"1","Title":"CVE-2007-0105","CVE":"CVE-2007-0105","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"105","Ordinal":"1","NoteData":"Stack-based buffer overflow in the CSAdmin service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allows remote attackers to execute arbitrary code via a crafted HTTP GET request.","Type":"Description","Title":"CVE-2007-0105"},{"CveYear":"2007","CveId":"105","Ordinal":"2","NoteData":"2007-01-08","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"105","Ordinal":"3","NoteData":"2017-07-28","Type":"Other","Title":"Modified"}]}}}