| Vulnerability Name: | CVE-2007-0107 (CCN-31297) | ||||||||
| Assigned: | 2007-01-05 | ||||||||
| Published: | 2007-01-05 | ||||||||
| Updated: | 2018-10-16 | ||||||||
| Summary: | WordPress before 2.0.6, when mbstring is enabled for PHP, decodes alternate character sets after escaping the SQL query, which allows remote attackers to bypass SQL injection protection schemes and execute arbitrary SQL commands via multibyte charsets, as demonstrated using UTF-7. Successful exploitation requires that the "mbstring" extension be enabled. This vulnerability is addressed in the following product release: WordPress, WordPress, 2.0.6 | ||||||||
| CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
| CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.3 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:POC/RL:OF/RC:C)
4.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:POC/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-Other | ||||||||
| Vulnerability Consequences: | Bypass Security | ||||||||
| References: | Source: CCN Type: Full-Disclosure Mailing List, Fri Jan 05 2007 - 09:14:07 CST WordPress Trackback Charset Decoding SQL Injection Vulnerability Source: MITRE Type: CNA CVE-2007-0107 Source: OSVDB Type: UNKNOWN 31579 Source: CCN Type: SA23595 Wordpress SQL Injection and Cross-Site Scripting Vulnerabilities Source: SECUNIA Type: Patch, Vendor Advisory 23595 Source: SECUNIA Type: UNKNOWN 23741 Source: GENTOO Type: UNKNOWN GLSA-200701-10 Source: SREASON Type: UNKNOWN 2112 Source: CONFIRM Type: Patch http://wordpress.org/development/2007/01/wordpress-206/ Source: CCN Type: WordPress Web site WordPress > Download Source: CCN Type: GLSA-200701-10 WordPress: Multiple vulnerabilities Source: MISC Type: Patch, Vendor Advisory http://www.hardened-php.net/advisory_022007.141.html Source: CCN Type: OpenPKG-SA-2007.005 WordPress Source: OPENPKG Type: Patch, Vendor Advisory OpenPKG-SA-2007.005 Source: CCN Type: OSVDB ID: 31579 WordPress Multibyte Charset SQL Injection Source: BUGTRAQ Type: UNKNOWN 20070105 Advisory 02/2007: WordPress Trackback Charset Decoding SQL Injection Vulnerability Source: BID Type: Exploit, Patch 21907 Source: CCN Type: BID-21907 WordPress Charset Decoding SQL Injection Vulnerability Source: VUPEN Type: UNKNOWN ADV-2007-0061 Source: XF Type: UNKNOWN wordpress-mbstring-security-bypass(31297) Source: XF Type: UNKNOWN wordpress-mbstring-security-bypass(31297) | ||||||||
| Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||