Description
Stampit Web uses guessable id values for online stamp purchases, which allows remote attackers to cause a denial of service (stamp invalidation) via a SOAP request with an id value for a stamp that has not yet been printed.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2007-3855 | Stampit Web uses guessable id values for online stamp purchases, which allows remote attackers to cause a denial of service (stamp invalidation) via a SOAP request with an id value for a stamp that has not yet been printed. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T14:37:04.137Z
Reserved: 2007-07-18T00:00:00.000Z
Link: CVE-2007-3871
No data.
Status : Modified
Published: 2007-09-12T19:17:00.000
Modified: 2026-04-23T00:35:47.467
Link: CVE-2007-3871
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD