PT-2007-3932 · Wikkawiki · Wikkawiki

Published

2007-05-11

·

Updated

2013-08-30

·

CVE-2007-2613

CVSS v2.0

8.3

High

VectorAV:A/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions WikkaWiki versions prior to 1.1.6.3
Description The issue allows attackers in a shared virtual host server environment to upload and execute an arbitrary configuration file. This is achieved by modifying the WAKKA CONFIG environment variable.
Recommendations For versions prior to 1.1.6.3, update to version 1.1.6.3 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-2613

Affected Products

Wikkawiki