| ID | CVE-2007-1639 | ||||||
| Sažetak | Unrestricted file upload vulnerability in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allows remote authenticated users to upload and execute arbitrary PHP code via a file with an executable extension, which is then accessed by the (1) calendar or (2) file management module, or possibly unspecified other files. | ||||||
| Reference |
|
||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:H/Au:S/C:P/I:P/A:P | ||||||
| Zadnje važnije ažuriranje | 16-10-2018 - 16:39 | ||||||
| Objavljeno | 23-03-2007 - 23:19 |

