Vulnerability Description
templates/config/mail.tpl in Tim Soderstrom StatsDawg 0.92 allows remote attackers to execute arbitrary programs by specifying the program name in the qshapeLocation parameter.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tim Soderstrom | Statsdawg | 0.92 |
References
- http://www.statsdawg.org/Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33283
- http://www.statsdawg.org/Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33283
FAQ
What is CVE-2007-1587?
CVE-2007-1587 is a vulnerability with a CVSS score of 10.0 (HIGH). templates/config/mail.tpl in Tim Soderstrom StatsDawg 0.92 allows remote attackers to execute arbitrary programs by specifying the program name in the qshapeLocation parameter.
How severe is CVE-2007-1587?
CVE-2007-1587 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-1587?
Check the references section above for vendor advisories and patch information. Affected products include: Tim Soderstrom Statsdawg.