Lucene search

K
cve[email protected]CVE-2007-6495
HistoryDec 20, 2007 - 8:46 p.m.

CVE-2007-6495

2007-12-2020:46:00
CWE-264
web.nvd.nist.gov
24
inc_newuser.asp
hosting controller
directory permissions
remote code execution
cve-2007-6495
nvd
security vulnerability

6.5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

7.3 High

AI Score

Confidence

Low

0.023 Low

EPSS

Percentile

89.9%

inc_newuser.asp in Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote authenticated users to change the permissions of directories named (1) db, (2) www, (3) Special, and (4) log at arbitrary locations under the web root via a modified Dirroot parameter in an AddUser action to accounts/AccountActions.asp. NOTE: this can be leveraged for remote code execution by changing the permissions of \Forum\db, which is configured for execution of ASP scripts with administrative privileges, and then uploading a script to \Forum\db.

Affected configurations

NVD
Node
hosting_controllerhosting_controllerMatch6.1_hotfix_3.3

6.5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

7.3 High

AI Score

Confidence

Low

0.023 Low

EPSS

Percentile

89.9%

Related for CVE-2007-6495