Unrated severityNVD Advisory· Published Mar 24, 2007· Updated Apr 23, 2026
CVE-2007-1666
CVE-2007-1666
Description
The processor_request function in the debugger server for DataRescue IDA Pro 5.0 and 5.1 does not verify that authentication has taken place before invoking the perform_request function, which allows remote attackers to perform unauthorized actions.
Affected products
2cpe:2.3:a:datarescue:ida_pro:5.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:datarescue:ida_pro:5.0:*:*:*:*:*:*:*
- cpe:2.3:a:datarescue:ida_pro:5.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.datarescue.com/freefiles/ida_remdeb_fix_22032007.zipnvdPatch
- secunia.com/advisories/24635nvdVendor Advisory
- www.vupen.com/english/advisories/2007/1089nvdVendor Advisory
- labs.idefense.com/intelligence/vulnerabilities/nvd
- www.osvdb.org/33523nvd
- www.securityfocus.com/bid/23114nvd
- www.securitytracker.com/idnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/33190nvd
News mentions
0No linked articles in our index yet.