HIGH · 9.3

CVE-2007-1600

PHP remote file inclusion vulnerability in module.php in Digital Eye Gallery 1.1 Beta (aka 0.1.1b) allows remote attackers to execute arbitrary PHP code via a URL in the menu parameter.

Vulnerability Description

PHP remote file inclusion vulnerability in module.php in Digital Eye Gallery 1.1 Beta (aka 0.1.1b) allows remote attackers to execute arbitrary PHP code via a URL in the menu parameter.

CVSS Score

9.3

HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
Digital Eye GalleryDigital Eye Gallery0.1.1b

References

FAQ

What is CVE-2007-1600?

CVE-2007-1600 is a vulnerability with a CVSS score of 9.3 (HIGH). PHP remote file inclusion vulnerability in module.php in Digital Eye Gallery 1.1 Beta (aka 0.1.1b) allows remote attackers to execute arbitrary PHP code via a URL in the menu parameter.

How severe is CVE-2007-1600?

CVE-2007-1600 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-1600?

Check the references section above for vendor advisories and patch information. Affected products include: Digital Eye Gallery Digital Eye Gallery.