Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6344 (Easy Web Make)

BugsAlert Home > CVE-2007-6344 (Easy Web Make)
 
 

Directory traversal vulnerability in modules/cms/index.php in Mcms Easy Web Make 1.3, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the template parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6344

Learn more about CVE-2007-6344 (Easy Web Make)
 
Tags: cve-2007-6344 easy web make

Related Items

      Vuln: webSPELL 'index.php' Cross-Site Scripting Vulnerability

      DreamPics Builder "page" SQL Injection Vulnerability

      Fedora Security Update Fixes teTeX DVI and PDF Handling Vulnerabilities

      CVE-2008-1867 (Pixel Motion Blog)

      HP Internet Express for Tru64 UNIX Multiple PostgreSQL Vulnerabilities

      FrSIRT - IBM DB2 UDB Remote Denial of Service and Security Bypass Issues

      FrSIRT - rPath Security Update Fixes vsftpd Denial of Service Vulnerability

 

Pixel