LOW · 2.1

CVE-2007-4656

backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plaintext command line arguments during FTP uploads, which allows local users to obtain...

Vulnerability Description

backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plaintext command line arguments during FTP uploads, which allows local users to obtain sensitive information by listing the process and its arguments, a different vulnerability than CVE-2007-2766.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
Backup ManagerBackup Manager<= 0.6.2

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-4656?

CVE-2007-4656 is a vulnerability with a CVSS score of 2.1 (LOW). backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plaintext command line arguments during FTP uploads, which allows local users to obtain...

How severe is CVE-2007-4656?

CVE-2007-4656 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-4656?

Check the references section above for vendor advisories and patch information. Affected products include: Backup Manager Backup Manager.