Record summary

CVE-2007-4174 has a selected CVSS score of 5.8; EIP currently links 2 catalogued exploits.

Description

Tor before 0.1.2.16, when ControlPort is enabled, does not properly restrict commands to localhost port 9051, which allows remote attackers to modify the torrc configuration file, compromise anonymity, and have other unspecified impact via HTTP POST data containing commands without valid authentication, as demonstrated by an HTML form (1) hosted on a web site or (2) injected by a Tor exit node.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBTor 0.1.2.15 - ControlPort Missing Authentication Unauthorized AccessExploitDB exploitby anonymousNot analyzed1 file
ExploitDB

PoC details
ExploitDBTor < 0.1.2.16 - ControlPort Remote RewriteExploitDB exploitby elgCrewNot analyzed1 file
ExploitDB

PoC details

References

10