CVE-2007-5442: Low severity CMSmadesimple CMS Made Simple vulnerability
Published Oct 14, 2007
·Updated
CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authenticated users to upload unspecified files via unknown vectors.
Affected Software
1 affected component
CMSmadesimple CMS Made Simple=1.1.3.1
Event History
Oct 14, 2007
CVE Published
06:17 PM
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-5442?
CVE-2007-5442 has a medium severity level due to its potential to allow unauthorized file uploads.
2
How do I fix CVE-2007-5442?
To fix CVE-2007-5442, ensure proper permission checks are implemented for file uploads in CMS Made Simple 1.1.3.1.
3
Who is affected by CVE-2007-5442?
CVE-2007-5442 affects users of CMS Made Simple version 1.1.3.1, particularly those allowing file uploads.
4
What are the potential impacts of CVE-2007-5442?
The potential impacts of CVE-2007-5442 include unauthorized file uploads which could lead to a web server compromise.
5
Is there a patch for CVE-2007-5442?
There is no official patch for CVE-2007-5442; users should apply workarounds or upgrade to a secure version.