Lucene search

K
ubuntucveUbuntu.comUB:CVE-2007-5491
HistoryOct 17, 2007 - 12:00 a.m.

CVE-2007-5491

2007-10-1700:00:00
ubuntu.com
ubuntu.com
13

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

EPSS

0.006

Percentile

78.5%

Directory traversal vulnerability in the translation module
(translator.php) in SiteBar 3.3.8 allows remote authenticated users to
chmod arbitrary files to 0777 via “…” sequences in the lang parameter.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchsitebar< 3.3.8-12.1UNKNOWN
ubuntu8.10noarchsitebar< 3.3.8-12.1UNKNOWN
ubuntu9.04noarchsitebar< 3.3.8-12.1UNKNOWN
ubuntu9.10noarchsitebar< 3.3.8-12.1UNKNOWN

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

EPSS

0.006

Percentile

78.5%