7.5
CVSSv2

CVE-2007-5188

Published: 03/10/2007 Updated: 08/03/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in the XOOPS uploader class in Xoops 2.0.17.1-RC1 and previous versions allows remote malicious users to upload arbitrary files via unspecified vectors related to improper upload configuration settings in class/uploader.php and class/mimetypes.inc.php, possibly an incomplete blacklist that omits the .php4 extension.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xoops xoops