2017-10-16 12:31:07 -04:00
{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org" ,
"ID" : "CVE-2007-5642" ,
"STATE" : "PUBLIC"
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a" ,
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
} ,
"vendor_name" : "n/a"
}
]
}
} ,
"data_format" : "MITRE" ,
"data_type" : "CVE" ,
"data_version" : "4.0" ,
"description" : {
"description_data" : [
{
"lang" : "eng" ,
"value" : "Multiple directory traversal vulnerabilities in PHP Project Management 0.8.10 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the def_lang parameter to modules/files/list.php; the m_path parameter to (2) modules/projects/summary.inc.php or (3) modules/tasks/summary.inc.php; (4) the module parameter to modules/projects/list.php; or the module parameter to index.php in the (5) certinfo, (6) emails, (7) events, (8) fax, (9) files, (10) groupadm, (11) history, (12) info, (13) log, (14) mail, (15) messages, (16) organizations, (17) phones, (18) presence, (19) projects, (20) reports, (21) search, (22) snf, (23) syslog, (24) tasks, or (25) useradm subdirectory of modules/."
}
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "n/a"
}
]
}
]
} ,
"references" : {
"reference_data" : [
{
2018-04-05 09:33:01 -04:00
"name" : "4549" ,
"refsource" : "EXPLOIT-DB" ,
2017-10-16 12:31:07 -04:00
"url" : "https://www.exploit-db.com/exploits/4549"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "26148" ,
"refsource" : "BID" ,
2017-10-16 12:31:07 -04:00
"url" : "http://www.securityfocus.com/bid/26148"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41951" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41951"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41954" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41954"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41955" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41955"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41956" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41956"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41960" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41960"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41963" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41963"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41970" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41970"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41972" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41972"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41974" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41974"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "41975" ,
"refsource" : "OSVDB" ,
2017-10-16 12:31:07 -04:00
"url" : "http://osvdb.org/41975"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "27347" ,
"refsource" : "SECUNIA" ,
2017-10-16 12:31:07 -04:00
"url" : "http://secunia.com/advisories/27347"
} ,
{
2018-04-05 09:33:01 -04:00
"name" : "phpprojectmanagement-module-file-include(37348)" ,
"refsource" : "XF" ,
2017-10-16 12:31:07 -04:00
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/37348"
}
]
}
}