Unrated severityNVD Advisory· Published May 16, 2007· Updated Apr 23, 2026
CVE-2007-2713
CVE-2007-2713
Description
ifdate 2.x sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to obtain administrative access via a direct request for the admin/ URI.
Affected products
2cpe:2.3:a:ifusionservices:ifdate:2.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ifusionservices:ifdate:2.0:*:*:*:*:*:*:*
- cpe:2.3:a:ifusionservices:ifdate:2.0.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- osvdb.org/36173nvd
- secunia.com/advisories/25237nvd
- securityreason.com/securityalert/2707nvd
- www.expw0rm.com/ifdate-2-unauthorized-administrative-access-bug_no285.htmlnvd
- www.securityfocus.com/archive/1/468545/100/0/threadednvd
- www.securityfocus.com/bid/23971nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/34257nvd
News mentions
0No linked articles in our index yet.