{"api_version":"1","generated_at":"2026-07-23T09:26:26+00:00","cve":"CVE-2007-2883","urls":{"html":"https://cve.report/CVE-2007-2883","api":"https://cve.report/api/cve/CVE-2007-2883.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2883","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2883"},"summary":{"title":"CVE-2007-2883","description":"Credant Mobile Guardian Shield for Windows 5.2.1.105 and earlier stores account names and passwords in plaintext in memory, which allows local users to obtain sensitive information by (1) reading the paging file or (2) dumping and searching the memory image.  NOTE: This issue crosses privilege boundaries because the product is intended to protect the data on a stolen computer.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-05-30 01:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.6","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://securityreason.com/securityalert/2753","name":"http://securityreason.com/securityalert/2753","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Vulnerability in Credant Mobile Guardian Shield for Windows - SecurityReason.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/821865","name":"http://www.kb.cert.org/vuls/id/821865","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Vulnerability Note VU#821865","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/469486/100/0/threaded","name":"http://www.securityfocus.com/archive/1/469486/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/24139","name":"http://www.securityfocus.com/bid/24139","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"Credant Mobile Guardian Shield Information Disclosure Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/25410","name":"http://secunia.com/advisories/25410","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Credant Mobile Guardian Shield for Windows Information Disclosure - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34487","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34487","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/36524","name":"http://osvdb.org/36524","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2883","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2883","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2883","vulnerable":"1","versionEndIncluding":"5.2.1.105","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"credant","cpe5":"credant_mobile_guardian_shield_-_windows","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:57:54.216Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"VU#821865","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/821865"},{"name":"20070524 Vulnerability in Credant Mobile Guardian Shield for Windows","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/469486/100/0/threaded"},{"name":"36524","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/36524"},{"name":"2753","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/2753"},{"name":"25410","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/25410"},{"name":"24139","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24139"},{"name":"mobileguardianshield-paging-info-disclosure(34487)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34487"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-05-24T00:00:00.000Z","descriptions":[{"lang":"en","value":"Credant Mobile Guardian Shield for Windows 5.2.1.105 and earlier stores account names and passwords in plaintext in memory, which allows local users to obtain sensitive information by (1) reading the paging file or (2) dumping and searching the memory image.  NOTE: This issue crosses privilege boundaries because the product is intended to protect the data on a stolen computer."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-16T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"VU#821865","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/821865"},{"name":"20070524 Vulnerability in Credant Mobile Guardian Shield for Windows","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/469486/100/0/threaded"},{"name":"36524","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/36524"},{"name":"2753","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/2753"},{"name":"25410","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/25410"},{"name":"24139","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24139"},{"name":"mobileguardianshield-paging-info-disclosure(34487)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34487"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2883","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Credant Mobile Guardian Shield for Windows 5.2.1.105 and earlier stores account names and passwords in plaintext in memory, which allows local users to obtain sensitive information by (1) reading the paging file or (2) dumping and searching the memory image.  NOTE: This issue crosses privilege boundaries because the product is intended to protect the data on a stolen computer."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"VU#821865","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/821865"},{"name":"20070524 Vulnerability in Credant Mobile Guardian Shield for Windows","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/469486/100/0/threaded"},{"name":"36524","refsource":"OSVDB","url":"http://osvdb.org/36524"},{"name":"2753","refsource":"SREASON","url":"http://securityreason.com/securityalert/2753"},{"name":"25410","refsource":"SECUNIA","url":"http://secunia.com/advisories/25410"},{"name":"24139","refsource":"BID","url":"http://www.securityfocus.com/bid/24139"},{"name":"mobileguardianshield-paging-info-disclosure(34487)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34487"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2883","datePublished":"2007-05-30T01:00:00.000Z","dateReserved":"2007-05-29T00:00:00.000Z","dateUpdated":"2024-08-07T13:57:54.216Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-05-30 01:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:credant:credant_mobile_guardian_shield_-_windows:*:*:*:*:*:*:*:*","versionEndIncluding":"5.2.1.105","matchCriteriaId":"2840A920-3D9E-41F0-93FE-69ABCAD8D67F"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2883","Ordinal":"1","Title":"CVE-2007-2883","CVE":"CVE-2007-2883","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2883","Ordinal":"1","NoteData":"Credant Mobile Guardian Shield for Windows 5.2.1.105 and earlier stores account names and passwords in plaintext in memory, which allows local users to obtain sensitive information by (1) reading the paging file or (2) dumping and searching the memory image.  NOTE: This issue crosses privilege boundaries because the product is intended to protect the data on a stolen computer.","Type":"Description","Title":"CVE-2007-2883"},{"CveYear":"2007","CveId":"2883","Ordinal":"2","NoteData":"2007-05-29","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2883","Ordinal":"3","NoteData":"2018-10-16","Type":"Other","Title":"Modified"}]}}}