MEDIUM · 4.3

CVE-2007-3008

Mbedthis AppWeb before 2.2.2 enables the HTTP TRACE method, which has unspecified impact probably related to remote information leaks and cross-site tracing (XST) attacks, a related issue to CVE-2004-...

Vulnerability Description

Mbedthis AppWeb before 2.2.2 enables the HTTP TRACE method, which has unspecified impact probably related to remote information leaks and cross-site tracing (XST) attacks, a related issue to CVE-2004-2320 and CVE-2005-3398.

CVSS Score

4.3

MEDIUM

AV:N/AC:M/Au:N/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
Mbedthis SoftwareMbedthis Appweb Http Server2.0.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-3008?

CVE-2007-3008 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Mbedthis AppWeb before 2.2.2 enables the HTTP TRACE method, which has unspecified impact probably related to remote information leaks and cross-site tracing (XST) attacks, a related issue to CVE-2004-...

How severe is CVE-2007-3008?

CVE-2007-3008 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-3008?

Check the references section above for vendor advisories and patch information. Affected products include: Mbedthis Software Mbedthis Appweb Http Server.