CVE-2007-5735
18-year-old NGINX vulnerability allows DoS, potential RCE
eFileMan 7.1.0.87-88 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain unspecified user information via a direct request for cgi-bin/efileman/efileman_config.pm.
Coverage 1 source
-
2026-05-14
BleepingComputer
high
18-year-old NGINX vulnerability allows DoS, potential RCE
18-year-old NGINX vulnerability allows DoS and potential RCE.
Also covered
- CVE-2026-73570 Zimbra Collaboration
- CVE-2026-88772 Memory overflow vulnerability leading to Remote Code Execution or Denial of Service
- CVE-2026-88771 A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands
- CVE-2026-91191 Lantronix G520 Series Cellular Gateway Improper Verification of Cryptographic Signature
- CVE-2026-86950 Apple iOS and iPadOS