CVE-2007-1787

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/03/2007
Last modified:
09/04/2025

Description

Multiple PHP remote file inclusion vulnerabilities in lib/timesheet.class.php in Softerra Time-Assistant 6.2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) inc_dir or (2) lib_dir parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:softerra:time-assistant:*:*:*:*:*:*:*:* 6.2 (including)