CVE: CVE-2007-3365

Export to Word

MyServer 0.8.9 and earlier does not properly handle uppercase characters in filename extensions, which allows remote attackers to obtain sensitive information (script source code) via a modified extension, as demonstrated by post.mscgI.

Threat-Mapped Scoring

Score: 3.25

Priority: P2 - Serious (High)

EPSS

Score: 0.18438
Percentile: 0.94936

CVSS Scoring

CVSS v3.1 Score: 7.5

Severity: HIGH

Mapped CWE(s)

Affected Products

← Back to Home