7.5
CVSSv2

CVE-2007-1035

Published: 21/02/2007 Updated: 29/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in certain demonstration scripts in getID3 1.7.1, as used in the Mediafield and Audio modules for Drupal, allows remote malicious users to read and delete arbitrary files, list arbitrary directories, and write to empty files or .mp3 files via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

drupal audio module

drupal getid3 1.7.1

drupal mediafield module