Vulnerability Details CVE-2007-5231
Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticated administrators to upload and execute arbitrary .php files by sending a modified MIME type. NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2007-5230.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.025
EPSS Ranking 84.6%
CVSS Severity
CVSS v2 Score 4.6
Products affected by CVE-2007-5231
-
cpe:2.3:a:zomplog:zomplog:3.7
-
cpe:2.3:a:zomplog:zomplog:3.7.6
-
cpe:2.3:a:zomplog:zomplog:3.8
-
cpe:2.3:a:zomplog:zomplog:3.8.1