peter bassill · operator
$ cve CVE-2007-1043 JSON

CVE-2007-1043 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 8.1% (pctl 95)

Patch early

A public exploit exists.

Description

Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and (2) config.php.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS8.13% — more likely to be exploited than 95% of all CVEs
On CISA KEVno
Public exploityes
Published2007-02-21
Last modified2026-06-16

Affected (18)

VendorProduct
applemac os x
ezboowebstats
hphp-ux
hptru64
ibmaix
ibmos2
linuxlinux kernel
microsoftwindows 2000
microsoftwindows 2003 server
microsoftwindows 95
microsoftwindows 98
microsoftwindows 98se
microsoftwindows me
microsoftwindows nt
microsoftwindows xp
santa cruz operationsco unix
sunsolaris
windriverbsdos

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD