AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2007-5223

MEDIUM · CVSS 6.8 EPSS 1.42%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-10-05 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2007-5223
Severity
MEDIUM
CVSS
6.8
EPSS
1.42%

Original Filing — NVD Description

Multiple unspecified vulnerabilities in AlstraSoft Affiliate Network Pro allow remote attackers to include local files and have other unspecified impact, related to incorrect input validation or other defects involving (1) admin/backupstart.php, (2) a .sql filename under admin/admin/dump/, (3) a .sql filename in the fl parameter to admin/downloadbackup.php, and (4) a .. (dot dot) in the fl parameter to admin/downloadbackup.php.