Vulnerabilities > CVE-2007-0975 - Unspecified vulnerability in Apache Stats Apache Stats 0.0.1Beta/0.0.2Beta
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Variable extraction vulnerability in Ian Bezanson Apache Stats before 0.0.3 beta allows attackers to overwrite critical variables, with unknown impact, when the extract function is used on the _REQUEST superglobal array.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
References
- http://sourceforge.net/forum/forum.php?forum_id=660919
- http://sourceforge.net/forum/forum.php?forum_id=660919
- http://superb-east.dl.sourceforge.net/sourceforge/apachestats/apacheStats_0.0.3Beta.tar.bz2
- http://superb-east.dl.sourceforge.net/sourceforge/apachestats/apacheStats_0.0.3Beta.tar.bz2
- http://www.vupen.com/english/advisories/2007/0598
- http://www.vupen.com/english/advisories/2007/0598