CVE-2007-4371: Medium severity HotScripts Neuron Blog vulnerability
Published Aug 15, 2007
·Updated
Unrestricted file upload vulnerability in admin/pages/blog-add.php in Neuron Blog 1.1 allows remote attackers to upload and execute arbitrary PHP files in uploads/.
Affected Software
1 affected component
HotScripts Neuron Blog=1.1
Event History
Aug 15, 2007
CVE Published
11:17 PM
Aug 16, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4371?
CVE-2007-4371 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2007-4371?
To fix CVE-2007-4371, you should update to a patched version of Neuron Blog that addresses this file upload issue.
3
What are the risks associated with CVE-2007-4371?
The risks of CVE-2007-4371 include unauthorized access to the server and the ability for attackers to run arbitrary code.
4
Who is affected by CVE-2007-4371?
Users of Neuron Blog version 1.1 are specifically affected by CVE-2007-4371.
5
What does CVE-2007-4371 allow an attacker to do?
CVE-2007-4371 allows attackers to upload and execute arbitrary PHP files on the server.