{"api_version":"1","generated_at":"2026-07-23T10:51:05+00:00","cve":"CVE-2007-5431","urls":{"html":"https://cve.report/CVE-2007-5431","api":"https://cve.report/api/cve/CVE-2007-5431.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-5431","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-5431"},"summary":{"title":"CVE-2007-5431","description":"include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login credentials, which might allow remote attackers to gain unauthorized access to the FTP server being used by the module by viewing the source code.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-10-12 23:17:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-200","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.8","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:N/A:N","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/archive/1/482006/100/0/threaded","name":"http://www.securityfocus.com/archive/1/482006/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securityvulns.ru/Sdocument4.html","name":"http://securityvulns.ru/Sdocument4.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"множественные уязвимости в Stride v1.0","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/45487","name":"http://osvdb.org/45487","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://securityreason.com/securityalert/3216","name":"http://securityreason.com/securityalert/3216","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityReason - Vulnerabilities digest by  different  Russian  speaking authors","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-5431","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-5431","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"5431","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"javaatwork","cpe5":"myftpuploader_module","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"5431","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"scottmanktelow","cpe5":"stride","cpe6":"1.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T15:31:58.820Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20071010 Vulnerabilities digest","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/482006/100/0/threaded"},{"name":"3216","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/3216"},{"name":"45487","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/45487"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://securityvulns.ru/Sdocument4.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-10-10T00:00:00.000Z","descriptions":[{"lang":"en","value":"include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login credentials, which might allow remote attackers to gain unauthorized access to the FTP server being used by the module by viewing the source code."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-15T20:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20071010 Vulnerabilities digest","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/482006/100/0/threaded"},{"name":"3216","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/3216"},{"name":"45487","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/45487"},{"tags":["x_refsource_MISC"],"url":"http://securityvulns.ru/Sdocument4.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-5431","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login credentials, which might allow remote attackers to gain unauthorized access to the FTP server being used by the module by viewing the source code."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20071010 Vulnerabilities digest","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/482006/100/0/threaded"},{"name":"3216","refsource":"SREASON","url":"http://securityreason.com/securityalert/3216"},{"name":"45487","refsource":"OSVDB","url":"http://osvdb.org/45487"},{"name":"http://securityvulns.ru/Sdocument4.html","refsource":"MISC","url":"http://securityvulns.ru/Sdocument4.html"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-5431","datePublished":"2007-10-12T23:00:00.000Z","dateReserved":"2007-10-12T00:00:00.000Z","dateUpdated":"2024-08-07T15:31:58.820Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-10-12 23:17:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-200","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:N/A:N","baseScore":7.8,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:javaatwork:myftpuploader_module:*:*:*:*:*:*:*:*","matchCriteriaId":"E571DABF-D38D-4DF2-8C0A-E9AFADC70AFB"},{"vulnerable":true,"criteria":"cpe:2.3:a:scottmanktelow:stride:1.0:*:*:*:*:*:*:*","matchCriteriaId":"B48EF2ED-045D-4BB9-B31D-C57C50CB9277"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"5431","Ordinal":"1","Title":"CVE-2007-5431","CVE":"CVE-2007-5431","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"5431","Ordinal":"1","NoteData":"include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login credentials, which might allow remote attackers to gain unauthorized access to the FTP server being used by the module by viewing the source code.","Type":"Description","Title":"CVE-2007-5431"},{"CveYear":"2007","CveId":"5431","Ordinal":"2","NoteData":"2007-10-12","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"5431","Ordinal":"3","NoteData":"2018-10-15","Type":"Other","Title":"Modified"}]}}}