SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2007-4174

Tor before 0.1.2.16, when ControlPort is enabled, does not properly restrict commands to localhost port 9051, which allows remote attackers to modify the torrc configuration file, compromise anonymity, and have other unspecified impact via HTTP POST…

MEDIUM 5.8EPSS 6.21%

Does this matter?

Lower severity and a low EPSS score (6.21%). Track it; it rarely justifies an emergency change on its own.

Description

Tor before 0.1.2.16, when ControlPort is enabled, does not properly restrict commands to localhost port 9051, which allows remote attackers to modify the torrc configuration file, compromise anonymity, and have other unspecified impact via HTTP POST data containing commands without valid authentication, as demonstrated by an HTML form (1) hosted on a web site or (2) injected by a Tor exit node.

CVSS 2.0
5.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
EPSS
6.21% probability · 93th percentile
CISA KEV
Not listed
Weakness
CWE-264
Affected
tor/tor
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.