HIGH · 7.8

CVE-2007-0163

SecureKit Steganography 1.7.1 and 1.8 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replaci...

Vulnerability Description

SecureKit Steganography 1.7.1 and 1.8 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replacing the last 20 bytes of the JPEG image with alternate password information.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:C/I:N/A:N
Confidentiality
COMPLETE
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
SecurekitSecurekit Steganography1.7.1

References

FAQ

What is CVE-2007-0163?

CVE-2007-0163 is a vulnerability with a CVSS score of 7.8 (HIGH). SecureKit Steganography 1.7.1 and 1.8 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replaci...

How severe is CVE-2007-0163?

CVE-2007-0163 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-0163?

Check the references section above for vendor advisories and patch information. Affected products include: Securekit Securekit Steganography.