8.5
CVSSv2

CVE-2007-0505

Published: 26/01/2007 Updated: 29/07/2017
CVSS v2 Base Score: 8.5 | Impact Score: 10 | Exploitability Score: 6.8
VMScore: 756
Vector: AV:N/AC:M/Au:S/C:C/I:C/A:C

Vulnerability Summary

Unrestricted file upload vulnerability in the Project issue tracking 4.7.0 up to and including 5.x prior to 20070123, a module for Drupal, allows remote authenticated users to execute arbitrary code by attaching a file with executable or multiple extensions to a project issue.

Vulnerable Product Search on Vulmon Subscribe to Product

drupal project 4.7_1.1

drupal project 4.7_2.1

drupal project 4.6_1.1

drupal project 4.7

drupal project issue tracking module 5.0

drupal project 5.0

drupal project issue tracking module 4.7

drupal project 4.6

drupal project issue tracking module 4.7_1.1

drupal project issue tracking module 4.7_2.1