6.5
CVE-2007-5401
- EPSS 1.11%
- Veröffentlicht 09.01.2008 21:46:00
- Zuletzt bearbeitet 16.06.2026 22:46:03
- Quelle PSIRT-CNA@flexerasoftware.com
- CVE-Watchlists
- Unerledigt
Unrestricted file upload vulnerability in uploadrequest.asp in Layton HelpBox 3.7.1 allows remote authenticated users to upload and execute arbitrary ASP files, related to not properly checking file extensions.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Layton Technology ≫ Helpbox Version3.7.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.11% | 0.616 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|
http://secunia.com/advisories/27699
http://secunia.com/secunia_research/2007-94/advisory/
http://www.securityfocus.com/bid/27187
https://exchange.xforce.ibmcloud.com/vulnerabilities/39536