Lucene search

K
cveMitreCVE-2007-1549
HistoryMar 20, 2007 - 10:19 p.m.

CVE-2007-1549

2007-03-2022:19:00
mitre
web.nvd.nist.gov
34
cve-2007-1549
file upload
vulnerability
phpx 3.5.15
remote attackers
arbitrary php scripts

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.012

Percentile

85.2%

Unrestricted file upload vulnerability in gallery.php in phpx 3.5.15 allows remote attackers to upload and execute arbitrary PHP scripts via an addImage action, which places scripts into the gallery/shelties/ directory.

Affected configurations

Nvd
Node
phpxphpxRange3.5.9
VendorProductVersionCPE
phpxphpx*cpe:2.3:a:phpx:phpx:*:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.012

Percentile

85.2%

Related for CVE-2007-1549