← Back

CVE-2007-0505

nvd nist
Published: Jan 26, 2007Modified: Apr 23, 2026

JSON object

Loading...
8.5
Vector
AV:N/AC:M/Au:S/C:C/I:C/A:C
Exploitability: 6.8 / Impact: 10.0
Source: NVD

Description

Unrestricted file upload vulnerability in the Project issue tracking 4.7.0 through 5.x before 20070123, a module for Drupal, allows remote authenticated users to execute arbitrary code by attaching a file with executable or multiple extensions to a project issue.

Affected (10)

2 products
Project
Project Issue Tracking Module
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Drupal
Version 4.6
Version 4.6_1.1
Version 4.7
Version 4.7_1.1
Version 4.7_2.1
Version 5.0
Drupal
Version 4.7
Version 4.7_1.1
Version 4.7_2.1
Version 5.0

References (12)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.