{"api_version":"1","generated_at":"2026-04-23T11:32:17+00:00","cve":"CVE-2007-2033","urls":{"html":"https://cve.report/CVE-2007-2033","api":"https://cve.report/api/cve/CVE-2007-2033.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2033","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2033"},"summary":{"title":"CVE-2007-2033","description":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.81.0 allows remote authenticated users to read any configuration page by changing the group membership of user accounts, aka Bug ID CSCse78596.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-04-16 21:19:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"6.5","severity":"","vector":"AV:N/AC:L/Au:S/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:P/I:P/A:P","baseScore":6.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://secunia.com/advisories/24865","name":"http://secunia.com/advisories/24865","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Cisco Products Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1017907","name":"http://securitytracker.com/id?1017907","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Cisco Wireless Control System Lets Remote Users Read/Write Files and Remote Authenticated Users Gain Elevated Privileges","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml","name":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cisco - Networking, Cloud, and Cybersecurity Solutions","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/23460","name":"http://www.securityfocus.com/bid/23460","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cisco Wireless Control System Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1367","name":"http://www.vupen.com/english/advisories/2007/1367","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/34129","name":"http://www.osvdb.org/34129","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2033","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2033","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2033","vulnerable":"1","versionEndIncluding":"4.0.95","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"cisco","cpe5":"wireless_control_system","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:23:49.112Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20070412 Multiple Vulnerabilities in the Cisco Wireless Control System","tags":["vendor-advisory","x_refsource_CISCO","x_transferred"],"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml"},{"name":"ADV-2007-1367","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1367"},{"name":"1017907","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1017907"},{"name":"cisco-wcs-account-privilege-escalation(33612)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612"},{"name":"23460","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/23460"},{"name":"24865","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24865"},{"name":"34129","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34129"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-04-12T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.81.0 allows remote authenticated users to read any configuration page by changing the group membership of user accounts, aka Bug ID CSCse78596."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20070412 Multiple Vulnerabilities in the Cisco Wireless Control System","tags":["vendor-advisory","x_refsource_CISCO"],"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml"},{"name":"ADV-2007-1367","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1367"},{"name":"1017907","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1017907"},{"name":"cisco-wcs-account-privilege-escalation(33612)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612"},{"name":"23460","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/23460"},{"name":"24865","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24865"},{"name":"34129","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34129"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2033","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.81.0 allows remote authenticated users to read any configuration page by changing the group membership of user accounts, aka Bug ID CSCse78596."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20070412 Multiple Vulnerabilities in the Cisco Wireless Control System","refsource":"CISCO","url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml"},{"name":"ADV-2007-1367","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1367"},{"name":"1017907","refsource":"SECTRACK","url":"http://securitytracker.com/id?1017907"},{"name":"cisco-wcs-account-privilege-escalation(33612)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612"},{"name":"23460","refsource":"BID","url":"http://www.securityfocus.com/bid/23460"},{"name":"24865","refsource":"SECUNIA","url":"http://secunia.com/advisories/24865"},{"name":"34129","refsource":"OSVDB","url":"http://www.osvdb.org/34129"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2033","datePublished":"2007-04-16T21:00:00.000Z","dateReserved":"2007-04-16T00:00:00.000Z","dateUpdated":"2024-08-07T13:23:49.112Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-04-16 21:19:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:P/I:P/A:P","baseScore":6.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":8,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:wireless_control_system:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0.95","matchCriteriaId":"9EC49D1B-76A2-4E5E-B00B-DE80BDA63C06"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2033","Ordinal":"1","Title":"CVE-2007-2033","CVE":"CVE-2007-2033","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2033","Ordinal":"1","NoteData":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.81.0 allows remote authenticated users to read any configuration page by changing the group membership of user accounts, aka Bug ID CSCse78596.","Type":"Description","Title":"CVE-2007-2033"},{"CveYear":"2007","CveId":"2033","Ordinal":"2","NoteData":"2007-04-16","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2033","Ordinal":"3","NoteData":"2017-07-28","Type":"Other","Title":"Modified"}]}}}