CVE-2007-2368: Medium severity webSPELL Webspell vulnerability
Published Apr 30, 2007
·Updated
picture.php in WebSPELL 4.01.02 and earlier allows remote attackers to read arbitrary files via the file parameter.
Affected Software
1 affected component
webSPELL Webspell<=4.01.02
Event History
Apr 30, 2007
CVE Published
11:19 PM
May 1, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2368?
CVE-2007-2368 is considered a medium severity vulnerability due to its potential for remote file inclusion.
2
How do I fix CVE-2007-2368?
The recommended fix for CVE-2007-2368 is to upgrade WebSPELL to version 4.01.03 or later.
3
What software is affected by CVE-2007-2368?
CVE-2007-2368 affects WebSPELL versions 4.01.02 and earlier.
4
What type of vulnerability is CVE-2007-2368?
CVE-2007-2368 is a remote file read vulnerability that allows attackers to access arbitrary files.
5
Can CVE-2007-2368 lead to further exploitation?
Yes, successful exploitation of CVE-2007-2368 can lead to unauthorized disclosure of sensitive information.