7.5
CVE-2007-0930
- EPSS 1.13%
- Veröffentlicht 14.02.2007 11:28:00
- Zuletzt bearbeitet 16.06.2026 22:36:35
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Variable extract vulnerability in Apache Stats before 0.0.3beta allows attackers to modify arbitrary variables and conduct attacks via unknown vectors involving the use of PHP's extract function.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Apache Stats ≫ Apache Stats Version0.0.1_beta
Apache Stats ≫ Apache Stats Version0.0.2_beta
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.13% | 0.621 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://sourceforge.net/forum/forum.php?forum_id=660919
http://www.securityfocus.com/bid/22388
http://www.vupen.com/english/advisories/2007/0559