ID | CVE-2007-1639 | ||||||
Sažetak | Unrestricted file upload vulnerability in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allows remote authenticated users to upload and execute arbitrary PHP code via a file with an executable extension, which is then accessed by the (1) calendar or (2) file management module, or possibly unspecified other files. | ||||||
Reference |
|
||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:H/Au:S/C:P/I:P/A:P | ||||||
Zadnje važnije ažuriranje | 16-10-2018 - 16:39 | ||||||
Objavljeno | 23-03-2007 - 23:19 |