CVE-2007-4454

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/08/2007
Last modified:
09/04/2025

Description

Eval injection vulnerability in environment.php in Olate Download (od) 3.4.1 allows context-dependent attackers to execute arbitrary code via a crafted version string, as referenced by the (1) PDO::ATTR_SERVER_VERSION or (2) PDO::ATTR_CLIENT_VERSION attribute.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:olate:olatedownload:3.4.1:*:*:*:*:*:*:*