CyberRota Analysis
AI analysis pending.
CVE
CVE-2007-1541
Severity
HIGH
CVSS
7.5
EPSS
1.63%
Original NVD Description
Directory traversal vulnerability in am.pl in SQL-Ledger 2.6.27 only checks for the presence of a NULL (%00) character to protect against directory traversal attacks, which allows remote attackers to run arbitrary executables and bypass authentication via a .. (dot dot) sequence in the login parameter.