{"api_version":"1","generated_at":"2026-04-23T11:32:24+00:00","cve":"CVE-2007-2034","urls":{"html":"https://cve.report/CVE-2007-2034","api":"https://cve.report/api/cve/CVE-2007-2034.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2034","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2034"},"summary":{"title":"CVE-2007-2034","description":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.87.0 allows remote authenticated users to gain the privileges of the SuperUsers group, and manage the application and its networks, related to the group membership of user accounts, aka Bug ID CSCsg05190.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-04-16 21:19:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-noinfo","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9","severity":"","vector":"AV:N/AC:L/Au:S/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/24865","name":"http://secunia.com/advisories/24865","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Cisco Products Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1017907","name":"http://securitytracker.com/id?1017907","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Cisco Wireless Control System Lets Remote Users Read/Write Files and Remote Authenticated Users Gain Elevated Privileges","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml","name":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cisco - Networking, Cloud, and Cybersecurity Solutions","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/23460","name":"http://www.securityfocus.com/bid/23460","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Cisco Wireless Control System Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1367","name":"http://www.vupen.com/english/advisories/2007/1367","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/34130","name":"http://www.osvdb.org/34130","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2034","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2034","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2034","vulnerable":"1","versionEndIncluding":"4.0.95","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"cisco","cpe5":"wireless_control_system","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:23:50.429Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20070412 Multiple Vulnerabilities in the Cisco Wireless Control System","tags":["vendor-advisory","x_refsource_CISCO","x_transferred"],"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml"},{"name":"ADV-2007-1367","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1367"},{"name":"1017907","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1017907"},{"name":"cisco-wcs-account-privilege-escalation(33612)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612"},{"name":"23460","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/23460"},{"name":"34130","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34130"},{"name":"24865","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24865"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-04-12T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.87.0 allows remote authenticated users to gain the privileges of the SuperUsers group, and manage the application and its networks, related to the group membership of user accounts, aka Bug ID CSCsg05190."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20070412 Multiple Vulnerabilities in the Cisco Wireless Control System","tags":["vendor-advisory","x_refsource_CISCO"],"url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml"},{"name":"ADV-2007-1367","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1367"},{"name":"1017907","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1017907"},{"name":"cisco-wcs-account-privilege-escalation(33612)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612"},{"name":"23460","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/23460"},{"name":"34130","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34130"},{"name":"24865","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24865"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2034","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.87.0 allows remote authenticated users to gain the privileges of the SuperUsers group, and manage the application and its networks, related to the group membership of user accounts, aka Bug ID CSCsg05190."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20070412 Multiple Vulnerabilities in the Cisco Wireless Control System","refsource":"CISCO","url":"http://www.cisco.com/warp/public/707/cisco-sa-20070412-wcs.shtml"},{"name":"ADV-2007-1367","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1367"},{"name":"1017907","refsource":"SECTRACK","url":"http://securitytracker.com/id?1017907"},{"name":"cisco-wcs-account-privilege-escalation(33612)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33612"},{"name":"23460","refsource":"BID","url":"http://www.securityfocus.com/bid/23460"},{"name":"34130","refsource":"OSVDB","url":"http://www.osvdb.org/34130"},{"name":"24865","refsource":"SECUNIA","url":"http://secunia.com/advisories/24865"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2034","datePublished":"2007-04-16T21:00:00.000Z","dateReserved":"2007-04-16T00:00:00.000Z","dateUpdated":"2024-08-07T13:23:50.429Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-04-16 21:19:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-noinfo","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:h:cisco:wireless_control_system:*:*:*:*:*:*:*:*","versionEndIncluding":"4.0.95","matchCriteriaId":"9EC49D1B-76A2-4E5E-B00B-DE80BDA63C06"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2034","Ordinal":"1","Title":"CVE-2007-2034","CVE":"CVE-2007-2034","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2034","Ordinal":"1","NoteData":"Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.87.0 allows remote authenticated users to gain the privileges of the SuperUsers group, and manage the application and its networks, related to the group membership of user accounts, aka Bug ID CSCsg05190.","Type":"Description","Title":"CVE-2007-2034"},{"CveYear":"2007","CveId":"2034","Ordinal":"2","NoteData":"2007-04-16","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2034","Ordinal":"3","NoteData":"2017-07-28","Type":"Other","Title":"Modified"}]}}}