AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-1639

MEDIUM · CVSS 4.6 EPSS 1.99%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-03-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-1639
Severity
MEDIUM
CVSS
4.6
EPSS
1.99%

Original NVD Description

Unrestricted file upload vulnerability in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allows remote authenticated users to upload and execute arbitrary PHP code via a file with an executable extension, which is then accessed by the (1) calendar or (2) file management module, or possibly unspecified other files.