Vulnerability Description
Unspecified vulnerability in administration.php in xodagallery allows remote attackers to execute arbitrary code via the cmd parameter. NOTE: CVE disputes this vulnerability because administration.php does not use the cmd parameter for inclusion
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Xodagallery | Xodagallery | All versions |
References
- http://osvdb.org/35291
- http://securityreason.com/securityalert/2561
- http://www.attrition.org/pipermail/vim/2007-April/001516.html
- http://www.securityfocus.com/archive/1/465088/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33522
- http://osvdb.org/35291
- http://securityreason.com/securityalert/2561
- http://www.attrition.org/pipermail/vim/2007-April/001516.html
- http://www.securityfocus.com/archive/1/465088/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33522
FAQ
What is CVE-2007-2020?
CVE-2007-2020 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Unspecified vulnerability in administration.php in xodagallery allows remote attackers to execute arbitrary code via the cmd parameter. NOTE: CVE disputes this vulnerability because administration.php...
How severe is CVE-2007-2020?
CVE-2007-2020 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2007-2020?
Check the references section above for vendor advisories and patch information. Affected products include: Xodagallery Xodagallery.