peter bassill · operator
$ cve CVE-2008-7001 JSON

CVE-2008-7001 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 3.6% (pctl 89)

Patch early

A public exploit exists.

Description

Unrestricted file upload vulnerability in the file manager in Creative Mind Creator CMS 5.0 allows remote attackers to execute arbitrary code via unknown vectors.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS3.55% — more likely to be exploited than 89% of all CVEs
On CISA KEVno
Public exploityes
Published2009-08-19
Last modified2026-06-16

Affected (1)

VendorProduct
creative mindcreator cms

Public exploits

SourceTitleDate
exploit-dbCreator CMS 5.0 - 'sideid' SQL Injection2008-09-09

References

→ the Explorer  ·  watch your stack  ·  NVD