CVE-2007-1119

critical

Description

Unspecified vulnerability in Novell ZENworks 7 Desktop Management Support Pack 1 before Hot patch 3 (ZDM7SP1HP3) allows remote attackers to upload images to certain folders that were not configured in the "Only allow uploads to the following directories" setting via unspecified vectors.

References

https://secure-support.novell.com/KanisaPlatform/Publishing/650/3484245_f.SAL_Public.html

https://secure-support.novell.com/KanisaPlatform/Publishing/408/3563780_f.SAL_Public.html

http://www.vupen.com/english/advisories/2007/0712

http://www.securityfocus.com/bid/22686

http://secunia.com/advisories/24274

http://osvdb.org/33533

Details

Source: Mitre, NVD

Published: 2007-02-27

Updated: 2025-04-09

Risk Information

CVSS v2

Base Score: 6.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 9.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Severity: Critical

EPSS

EPSS: 0.00857