CVE-2007-2560: Medium severity Mentiss Acgv Acgvannu vulnerability
Published May 9, 2007
·Updated
Directory traversal vulnerability in theme/acgv.php in ACGVannu 1.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the rubrik parameter.
Affected Software
1 affected component
Mentiss Acgv Acgvannu<=1.3
Event History
May 9, 2007
CVE Published
06:19 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2560?
CVE-2007-2560 is classified as a medium severity vulnerability.
2
What systems are affected by CVE-2007-2560?
CVE-2007-2560 affects ACGVannu version 1.3 and earlier.
3
What type of vulnerability is CVE-2007-2560?
CVE-2007-2560 is a directory traversal vulnerability.
4
How do attackers exploit CVE-2007-2560?
Attackers exploit CVE-2007-2560 by sending specially crafted requests that include .. (dot dot) in the rubrik parameter.
5
How can I mitigate CVE-2007-2560?
To mitigate CVE-2007-2560, upgrade to a later version of ACGVannu that is not affected.