peter bassill · operator
$ cve CVE-2007-2985 JSON

CVE-2007-2985 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 4.2% (pctl 91)

Patch early

A public exploit exists.

Description

Pheap 2.0 allows remote attackers to bypass authentication by setting a pheap_login cookie value to the administrator's username, which can be used to (1) obtain sensitive information, including the administrator password, via settings.php or (2) upload and execute arbitrary PHP code via an update_doc action in edit.php.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS4.17% — more likely to be exploited than 91% of all CVEs
WeaknessCWE-264
On CISA KEVno
Public exploityes
Published2007-06-01
Last modified2026-06-16

Affected (1)

VendorProduct
pheappheap

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD