Sploitus

CVE-2007-5230

1 known exploit for CVE-2007-5230

admin/upload_files.php in Zomplog 3.8.1 and earlier does not check for administrative credentials, which allows remote attackers to perform administrative actions via a direct request. NOTE: this can be leveraged for code execution by exploiting CVE-2007-5231.

Affected products
Zomplog
Zomplog
= 3.7, 3.7.6, 3.8, 3.8.1
Fix
Available
CVSS 2.0
7.5 HIGH
EPSS
4.7% (91th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2007-10-05
CVE-2007-5230 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2007-5230

Proof-of-concept code and exploit modules indexed by Sploitus