7.5
CVSSv2

CVE-2007-0599

Published: 30/01/2007 Updated: 16/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Variable overwrite vulnerability in common/config.php in Aztek Forum 4.00 allows remote malicious users to overwrite arbitrary program variables and conduct other unauthorized activities, such as copying arbitrary files using index/common_actions.php, via vectors associated with extract operations on the (1) POST, (2) GET, (3) COOKIE, and (4) SERVER superglobal arrays.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

aztek forum aztek forum 4.0