PT-2007-3687 · Progress · Progress Webspeed Messenger

Published

2007-04-30

·

Updated

2018-10-16

·

CVE-2007-2354

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Progress Webspeed Messenger (affected versions not specified)
Description The issue allows remote attackers to obtain sensitive information. This is achieved via a WService parameter containing "wsbroker1/webutil/about.r", which reveals the operating system and product information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-2354

Affected Products

Progress Webspeed Messenger