6.5
CVE-2007-6495
- EPSS 4.37%
- Veröffentlicht 20.12.2007 20:46:00
- Zuletzt bearbeitet 16.06.2026 22:48:10
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
inc_newuser.asp in Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote authenticated users to change the permissions of directories named (1) db, (2) www, (3) Special, and (4) log at arbitrary locations under the web root via a modified Dirroot parameter in an AddUser action to accounts/AccountActions.asp. NOTE: this can be leveraged for remote code execution by changing the permissions of \Forum\db, which is configured for execution of ASP scripts with administrative privileges, and then uploading a script to \Forum\db.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hosting Controller ≫ Hosting Controller Version6.1_hotfix_3.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.37% | 0.9 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|
http://hostingcontroller.com/english/logs/Post-Hotfix-3_3-sec-Patch-ReleaseNotes.html
http://secunia.com/advisories/28973
http://www.securityfocus.com/archive/1/485028/100/0/threaded
http://www.securityfocus.com/bid/26862
https://www.exploit-db.com/exploits/4730
http://securityreason.com/securityalert/3474
http://securitytracker.com/id?1019222
http://osvdb.org/44184