AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-0407

MEDIUM · CVSS 5 EPSS 1.57%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-01-29 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.0. It may be remotely exploitable.

CVE
CVE-2008-0407
Severity
MEDIUM
CVSS
5
EPSS
1.57%

Original NVD Description

HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication, regardless of whether authentication succeeded, which might make it more difficult for an administrator to determine who made a remote request.