Back to Database
Status published
Critical
CVE-2007-3154
Unspecified vulnerability in Walter Zorn wz_tooltip.js (aka wz_tooltips) before 4.01,...
Vulnerability Description
Unspecified vulnerability in Walter Zorn wz_tooltip.js (aka wz_tooltips) before 4.01, as used by eGroupWare before 1.2.107-2 and other packages, has unknown impact and remote attack vectors.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-3154
Credits & Attribution
No credits recorded in the NVD database.
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34913
- http://osvdb.org/37187
- http://secunia.com/advisories/25454
- http://www.securityfocus.com/bid/24378
- http://sourceforge.net/project/shownotes.php?release_id=513749&group_id=78745
- http://www.walterzorn.com/tooltip/history.htm
- http://sourceforge.net/project/shownotes.php?release_id=513311&group_id=78745
More from egroupware
View All →CVE-2017-14920
Stored XSS vulnerability in eGroupware Community Edition before 16.1.20170922 allows...
Medium
6.1
CVE-2014-2988
EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition before...
High
8.5
CVE-2014-2987
Multiple cross-site request forgery (CSRF) vulnerabilities in EGroupware Enterprise Line...
Medium
6.8
CVE-2014-2027
eGroupware before 1.8.006.20140217 allows remote attackers to conduct PHP object...
High
7.5
CVE-2012-2211
Cross-site scripting (XSS) vulnerability in phpgwapi/inc/common_functions_inc.php in eGroupware before 1.8.004.20120405...
Medium
4.3
Affected Vendor
egroupware
View all reports →Affected Software
egroupware
Vulnerable Versions:
0
Timeline
Official Publish:
June 11th, 2007
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.