CVE-2007-0625
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/01/2007
Last modified:
09/04/2025
Description
nxconfigure.sh in NoMachine NX Server before 2.1.0-18 does not validate the invoking user, which allows local users to modify server configuration keys in /usr/NX/etc/server.cfg, resulting in an unspecified denial of service.
Impact
Base Score 2.0
4.90
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:nomachine:nx_server:*:*:*:*:*:*:*:* | 2.1.0_17 (including) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://osvdb.org/33009
- http://secunia.com/advisories/23993
- http://www.nomachine.com/news_read.php?idnews=190
- http://www.nomachine.com/tr/view.php?id=TR01E01622
- http://www.securityfocus.com/bid/22308
- http://www.vupen.com/english/advisories/2007/0413
- https://exchange.xforce.ibmcloud.com/vulnerabilities/31941
- http://osvdb.org/33009
- http://secunia.com/advisories/23993
- http://www.nomachine.com/news_read.php?idnews=190
- http://www.nomachine.com/tr/view.php?id=TR01E01622
- http://www.securityfocus.com/bid/22308
- http://www.vupen.com/english/advisories/2007/0413
- https://exchange.xforce.ibmcloud.com/vulnerabilities/31941



