First published: Fri Jun 15 2007(Updated: )
The Menu Manager Mod for (1) web-app.net WebAPP (aka WebAPP NE) 0.9.9.3.3 through 0.9.9.8, and (2) web-app.org WebAPP before 0.9.9.6, allows remote authenticated users to execute arbitrary commands via shell metacharacters in the titles of items in a personal menu.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Web App.net Webapp | =0.9.9.3.3 | |
Web App.net Webapp | =0.9.9.3.4 | |
Web App.net Webapp | =0.9.9.4 | |
Web App.net Webapp | =0.9.9.5 | |
Web App.net Webapp | =0.9.9.6 | |
Web App.net Webapp | =0.9.9.7 | |
Web App.net Webapp | =0.9.9.8 | |
WebAPP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3242 is classified as a critical vulnerability due to its potential for arbitrary command execution.
To fix CVE-2007-3242, upgrade to WebAPP version 0.9.9.9 or later if using web-app.org, or to the latest version for web-app.net.
CVE-2007-3242 affects versions 0.9.9.3.3 through 0.9.9.8 of web-app.net WebAPP and all versions before 0.9.9.6 of web-app.org WebAPP.
CVE-2007-3242 allows remote authenticated users to execute arbitrary commands via shell metacharacters in personal menu item titles.
Exploitation of CVE-2007-3242 can lead to unauthorized command execution on the server, potentially compromising its integrity and security.