Back to search
CVE-2007-3871
Published: Sep 12, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Stampit Web uses guessable id values for online stamp purchases, which allows remote attackers to cause a denial of service (stamp invalidation) via a SOAP request with an id value for a stamp that has not yet been printed.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://www.cynops.de/advisories/CVE-2007-3871.txt
x_refsource_MISC
stampit-soap-dos(36365)
vdb-entry
x_refsource_XF
https://www.cynops.de/advisories/CVE-2007-3871-signed.txt
x_refsource_MISC
3129
third-party-advisory
x_refsource_SREASON
20070827 Stampit Web - DoS (CVE-2007-3871)
mailing-list
x_refsource_FULLDISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now