CVE-2007-0551: High severity CMSmadesimple CMS Made Simple vulnerability
Published Jan 29, 2007
·Updated
Multiple PHP remote file inclusion vulnerabilities in cmsimple/cms.php in CMSimple 2.7 allow remote attackers to execute arbitrary PHP code via a URL in the (1) pth[file][config] and (2) pth[file][image] parameters.
Affected Software
1 affected component
CMSmadesimple CMS Made Simple=2.7
Event History
Jan 29, 2007
CVE Published
05:28 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0551?
CVE-2007-0551 is categorized with a high severity level due to the potential for remote code execution.
2
How do I fix CVE-2007-0551?
To fix CVE-2007-0551, it is recommended to upgrade to the latest version of CMSimple to eliminate the remote file inclusion vulnerabilities.
3
What are the implications of CVE-2007-0551?
CVE-2007-0551 allows attackers to execute arbitrary PHP code, which can lead to complete system compromise.
4
Which software versions are affected by CVE-2007-0551?
CVE-2007-0551 specifically affects CMSimple version 2.7.
5
Are there any known exploits for CVE-2007-0551?
Yes, there are known exploits that target the vulnerabilities in CVE-2007-0551 for remote code execution.