CyberSec.Space Logo
Back to CVE Browser

CVE-2007-2777

HIGH
7.5
CVSS Severity Score
EPSS Score0.0800%
EPSS Percentile9.18th
PublishedMay 21, 2007
Last ModifiedApr 23, 2026

Vulnerability Description

Unrestricted file upload vulnerability in admin/addsptemplate.php in AlstraSoft Template Seller Pro 3.25 and earlier allows remote attackers to execute arbitrary PHP code via an arbitrary .php filename in the zip parameter, which is created under sptemplates/.

Affected Platforms (CPE)

πŸ“¦
Alstrasoft

Template Seller

<= 3.25

References & Advisories

Related Vulnerabilities