| Vulnerability Name: | CVE-2007-1329 (CCN-32776) | ||||||||||||||||||||
| Assigned: | 2007-02-28 | ||||||||||||||||||||
| Published: | 2007-02-28 | ||||||||||||||||||||
| Updated: | 2018-10-16 | ||||||||||||||||||||
| Summary: | Directory traversal vulnerability in SQL-Ledger, and LedgerSMB before 1.1.5, allows remote attackers to read and overwrite arbitrary files, and execute arbitrary code, via . (dot) characters adjacent to (1) users and (2) users/members strings, which are removed by blacklisting functions that filter these strings and collapse into .. (dot dot) sequences. | ||||||||||||||||||||
| CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||||||
| CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 8.7 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:H/RL:OF/RC:C)
6.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:H/RL:OF/RC:C)
| ||||||||||||||||||||
| Vulnerability Type: | CWE-Other | ||||||||||||||||||||
| Vulnerability Consequences: | File Manipulation | ||||||||||||||||||||
| References: | Source: MITRE Type: CNA CVE-2007-1329 Source: OSVDB Type: UNKNOWN 33619 Source: OSVDB Type: UNKNOWN 33621 Source: CCN Type: SA24363 LedgerSMB Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 24363 Source: CCN Type: SA24366 SQL-Ledger Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 24366 Source: SREASON Type: UNKNOWN 2381 Source: CCN Type: SECTRACK ID: 1017715 SQL-Ledger Directory Traversal Bug Lets Remote Users View or Write Files and Execute Arbitrary Code Source: SECTRACK Type: UNKNOWN 1017715 Source: CCN Type: SourceForge.net LedgerSMB Source: CCN Type: OSVDB ID: 33619 LedgerSMB users Blacklist String Bypass Source: CCN Type: OSVDB ID: 33621 SQL-Ledger users Blacklist String Bypass Source: BUGTRAQ Type: UNKNOWN 20070301 Full disclosure: Directory Transversal and Arbitrary Code Execution Vulnerability in SQL-Ledger and LedgerSMB Source: CCN Type: SQL-Ledger Web site SQL-Ledger Accounting Source: XF Type: UNKNOWN sqlledger-userpathmemberfile-dir-traversal(32776) Source: XF Type: UNKNOWN sqlledger-userpathmemberfile-dir-traversal(32776) | ||||||||||||||||||||
| Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||||||||||||||
| Oval Definitions | |||||||||||||||||||||
| |||||||||||||||||||||
| BACK | |||||||||||||||||||||