CVE-2007-0849 describes a local privilege escalation vulnerability in SysCP 1.2.15 and earlier versions. The flaw exists in the scripts/cronscript.php component, which fails to properly quote pathnames in user home directories. This allows a local attacker to inject shell metacharacters into a directory name, and then use the control panel to protect that directory, leading to arbitrary code execution. The vulnerability carries a high severity CVSS score of 7.2, indicating a critical impact with complete confidentiality, integrity, and availability compromise. It requires local access (AV:L) and has low attack complexity (AC:L), meaning it can be exploited relatively easily by an authenticated user. While there is no evidence of active exploitation or Metasploit modules, an exploit (EDB-29571) is available on ExploitDB. The CVE has received minimal community discussion and media coverage, suggesting it is not widely known or actively targeted.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.2.15CPE matchmatch criteria | cpe:2.3:a:syscp_team:syscp:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.