Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6214 (LearnLoop)

BugsAlert Home > CVE-2007-6214 (LearnLoop)
 
 

Directory traversal vulnerability in include/file_download.php in LearnLoop 2.0 beta7 allows remote attackers to read arbitrary files via a .. (dot dot) in the sFilePath parameter. NOTE: exploitation requires that the product is configured, but has zero files in the database.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6214

Learn more about CVE-2007-6214 (LearnLoop)
 
Tags: cve-2007-6214 learnloop

Related Items

      c:programEsetEmon.dll can not be installed or loaded.

      CVE-2008-0208 (Snitz Forums)

      Mercurial "applydiff()" Directory Traversal Security Issue

      Brief: Google releases browser security handbook

      CVE-2008-4879 (php_shop)

      FrSIRT - Cisco User-Changeable Password Remote Buffer Overflow Vulnerabilities

      unexpected termination

 

Pixel