{"api_version":"1","generated_at":"2026-07-23T12:23:10+00:00","cve":"CVE-2007-0968","urls":{"html":"https://cve.report/CVE-2007-0968","api":"https://cve.report/api/cve/CVE-2007-0968.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-0968","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-0968"},"summary":{"title":"CVE-2007-0968","description":"Unspecified vulnerability in Cisco Firewall Services Module (FWSM) before 2.3(4.7) and 3.x before 3.1(3.1) causes the access control entries (ACE) in an ACL to be improperly evaluated, which allows remote authenticated users to bypass intended certain ACL protections.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-02-16 00:28:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9","severity":"","vector":"AV:N/AC:L/Au:S/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/32521","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/32521","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/22561","name":"http://www.securityfocus.com/bid/22561","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cisco Multiple Products Multiple Remote Denial Of Service Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtml","name":"http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Multiple Vulnerabilities in Firewall Services Module  [Products & Services] - Cisco Systems","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24172","name":"http://secunia.com/advisories/24172","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Cisco Firewall Services Module Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/0609","name":"http://www.vupen.com/english/advisories/2007/0609","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1017650","name":"http://www.securitytracker.com/id?1017650","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cisco Firewall Service Module Lets Remote Users Deny Service and Potentially Bypass Intended ACLs - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-0968","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-0968","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"968","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"cisco","cpe5":"firewall_services_module","cpe6":"2.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"968","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"cisco","cpe5":"firewall_services_module","cpe6":"3.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T12:34:21.354Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"ADV-2007-0609","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/0609"},{"name":"22561","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/22561"},{"name":"cisco-fwsm-acl-security-bypass(32521)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/32521"},{"name":"1017650","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1017650"},{"name":"24172","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24172"},{"name":"20070214 Multiple Vulnerabilities in Firewall Services Module","tags":["vendor-advisory","x_refsource_CISCO","x_transferred"],"url":"http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtml"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-02-14T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in Cisco Firewall Services Module (FWSM) before 2.3(4.7) and 3.x before 3.1(3.1) causes the access control entries (ACE) in an ACL to be improperly evaluated, which allows remote authenticated users to bypass intended certain ACL protections."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"ADV-2007-0609","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/0609"},{"name":"22561","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/22561"},{"name":"cisco-fwsm-acl-security-bypass(32521)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/32521"},{"name":"1017650","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1017650"},{"name":"24172","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24172"},{"name":"20070214 Multiple Vulnerabilities in Firewall Services Module","tags":["vendor-advisory","x_refsource_CISCO"],"url":"http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtml"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-0968","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in Cisco Firewall Services Module (FWSM) before 2.3(4.7) and 3.x before 3.1(3.1) causes the access control entries (ACE) in an ACL to be improperly evaluated, which allows remote authenticated users to bypass intended certain ACL protections."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"ADV-2007-0609","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/0609"},{"name":"22561","refsource":"BID","url":"http://www.securityfocus.com/bid/22561"},{"name":"cisco-fwsm-acl-security-bypass(32521)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/32521"},{"name":"1017650","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1017650"},{"name":"24172","refsource":"SECUNIA","url":"http://secunia.com/advisories/24172"},{"name":"20070214 Multiple Vulnerabilities in Firewall Services Module","refsource":"CISCO","url":"http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtml"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-0968","datePublished":"2007-02-16T00:00:00.000Z","dateReserved":"2007-02-15T00:00:00.000Z","dateUpdated":"2024-08-07T12:34:21.354Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-02-16 00:28:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:firewall_services_module:2.3:*:*:*:*:*:*:*","matchCriteriaId":"E9A8528D-DF6A-4493-A77E-CBF08359F2E4"},{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:firewall_services_module:3.1:*:*:*:*:*:*:*","matchCriteriaId":"F90E9070-781D-4D3D-98EB-5B6DB9D3C75E"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"968","Ordinal":"1","Title":"CVE-2007-0968","CVE":"CVE-2007-0968","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"968","Ordinal":"1","NoteData":"Unspecified vulnerability in Cisco Firewall Services Module (FWSM) before 2.3(4.7) and 3.x before 3.1(3.1) causes the access control entries (ACE) in an ACL to be improperly evaluated, which allows remote authenticated users to bypass intended certain ACL protections.","Type":"Description","Title":"CVE-2007-0968"},{"CveYear":"2007","CveId":"968","Ordinal":"2","NoteData":"2007-02-15","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"968","Ordinal":"3","NoteData":"2017-07-28","Type":"Other","Title":"Modified"}]}}}