{"api_version":"1","generated_at":"2026-07-23T07:31:44+00:00","cve":"CVE-2007-6679","urls":{"html":"https://cve.report/CVE-2007-6679","api":"https://cve.report/api/cve/CVE-2007-6679.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-6679","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-6679"},"summary":{"title":"CVE-2007-6679","description":"Unspecified vulnerability in the Administrative Console in IBM WebSphere Application Server 6.1 before Fix Pack 13 has unknown impact and attack vectors, related to \"security concerns with monitor role users.\"  NOTE: it was later reported that 6.0.2 before Fix Pack 25 is also affected.","state":"PUBLISHED","assigner":"mitre","published_at":"2008-01-10 02:46:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-noinfo","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.vupen.com/english/advisories/2008/0241","name":"http://www.vupen.com/english/advisories/2008/0241","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-1.ibm.com/support/docview.wss?uid=swg27006876","name":"http://www-1.ibm.com/support/docview.wss?uid=swg27006876","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Fix list for WebSphere Application Server Version 6.0.2 - United States","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://securitytracker.com/id?1019174","name":"http://securitytracker.com/id?1019174","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM WebSphere Bug in Administrative Console Has Unspecified Impact - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/28588","name":"http://secunia.com/advisories/28588","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"WebSphere Application Server Two Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27007951","name":"http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27007951","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Fix list for IBM WebSphere Application Server V6.1 - United States","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/3955","name":"http://www.vupen.com/english/advisories/2007/3955","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=PK45768&apar=only","name":"http://www-1.ibm.com/support/search.wss?rs=0&q=PK45768&apar=only","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Search results","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-6679","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-6679","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1.0.11","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1.0.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1.0.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1.0.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1.0.7","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"6.1.0.9","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"6679","vulnerable":"1","versionEndIncluding":"6.0.2.24","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"websphere_application_server","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T16:18:20.244Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"ADV-2007-3955","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/3955"},{"name":"1019174","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1019174"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-1.ibm.com/support/docview.wss?uid=swg27006876"},{"name":"ADV-2008-0241","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2008/0241"},{"name":"28588","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/28588"},{"name":"PK45768","tags":["vendor-advisory","x_refsource_AIXAPAR","x_transferred"],"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=PK45768&apar=only"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27007951"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-11-21T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in the Administrative Console in IBM WebSphere Application Server 6.1 before Fix Pack 13 has unknown impact and attack vectors, related to \"security concerns with monitor role users.\"  NOTE: it was later reported that 6.0.2 before Fix Pack 25 is also affected."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2008-01-16T10:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"ADV-2007-3955","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/3955"},{"name":"1019174","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1019174"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-1.ibm.com/support/docview.wss?uid=swg27006876"},{"name":"ADV-2008-0241","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2008/0241"},{"name":"28588","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/28588"},{"name":"PK45768","tags":["vendor-advisory","x_refsource_AIXAPAR"],"url":"http://www-1.ibm.com/support/search.wss?rs=0&q=PK45768&apar=only"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27007951"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-6679","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in the Administrative Console in IBM WebSphere Application Server 6.1 before Fix Pack 13 has unknown impact and attack vectors, related to \"security concerns with monitor role users.\"  NOTE: it was later reported that 6.0.2 before Fix Pack 25 is also affected."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"ADV-2007-3955","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/3955"},{"name":"1019174","refsource":"SECTRACK","url":"http://securitytracker.com/id?1019174"},{"name":"http://www-1.ibm.com/support/docview.wss?uid=swg27006876","refsource":"CONFIRM","url":"http://www-1.ibm.com/support/docview.wss?uid=swg27006876"},{"name":"ADV-2008-0241","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2008/0241"},{"name":"28588","refsource":"SECUNIA","url":"http://secunia.com/advisories/28588"},{"name":"PK45768","refsource":"AIXAPAR","url":"http://www-1.ibm.com/support/search.wss?rs=0&q=PK45768&apar=only"},{"name":"http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27007951","refsource":"CONFIRM","url":"http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27007951"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-6679","datePublished":"2008-01-10T02:00:00.000Z","dateReserved":"2008-01-09T00:00:00.000Z","dateUpdated":"2024-08-07T16:18:20.244Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2008-01-10 02:46:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-noinfo","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:*:*:*:*:*:*:*:*","versionEndIncluding":"6.0.2.24","matchCriteriaId":"B6D01526-995E-4861-9A65-D71C6317872C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1:*:*:*:*:*:*:*","matchCriteriaId":"7B9CDD56-921C-4FAF-87E2-14B91EC1A93D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"5FC6EB31-9707-408B-8BF5-66BD23441A75"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"9B73E052-AF4F-4543-AA03-F5B1FA976EA8"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.3:*:*:*:*:*:*:*","matchCriteriaId":"23171B81-C991-467A-95A4-EDDAC59C37BC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.5:*:*:*:*:*:*:*","matchCriteriaId":"2586C584-3258-414B-AB28-1EBA0DBD0B83"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.7:*:*:*:*:*:*:*","matchCriteriaId":"BCA175EA-EDC6-4228-8E28-E9BBC981E60A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.9:*:*:*:*:*:*:*","matchCriteriaId":"C6A4EC9D-98C2-40B0-BA40-4838FE8D1FF7"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:websphere_application_server:6.1.0.11:*:*:*:*:*:*:*","matchCriteriaId":"7AF5BB33-4E78-4123-8093-EBEE2F2B5598"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"6679","Ordinal":"1","Title":"CVE-2007-6679","CVE":"CVE-2007-6679","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"6679","Ordinal":"1","NoteData":"Unspecified vulnerability in the Administrative Console in IBM WebSphere Application Server 6.1 before Fix Pack 13 has unknown impact and attack vectors, related to \"security concerns with monitor role users.\"  NOTE: it was later reported that 6.0.2 before Fix Pack 25 is also affected.","Type":"Description","Title":"CVE-2007-6679"},{"CveYear":"2007","CveId":"6679","Ordinal":"2","NoteData":"2008-01-09","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"6679","Ordinal":"3","NoteData":"2008-01-16","Type":"Other","Title":"Modified"}]}}}