CVE Vulnerabilities

CVE-2007-2334

Published: Apr 27, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Nortel VPN Router (aka Contivity) 1000, 2000, 4000, and 5000 before 5_05.149, 5_05.3xx before 5_05.304, and 6.x before 6_05.140 has two template HTML files lacking certain verification tags, which allows remote attackers to access the administration interface and change the device configuration via certain requests.

Affected Software

NameVendorStart VersionEnd Version
ContivityNortel1000_vpn_switch (including)1000_vpn_switch (including)
ContivityNortel2000_vpn_switch (including)2000_vpn_switch (including)
ContivityNortel4000_vpn_switch (including)4000_vpn_switch (including)
Vpn_router_5000Nortel**

References