Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6368 (ezContents)

BugsAlert Home > CVE-2007-6368 (ezContents)
 
 

Directory traversal vulnerability in index.php in ezContents 1.4.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the link parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6368

Learn more about CVE-2007-6368 (ezContents)
 
Tags: cve-2007-6368 ezcontents

Related Items

      Redhat Security Update Fixes util-linux Privilege Escalation Vulnerability

      EXPL_PIDIEF.D

      QuickTime <= 7.4.1 QTPlugin.ocx Multiple Remote Stack Overflow

      CVE-2008-4113 (kernel)

      pSys v0.7.0 Alpha (chatbox.php) Remote SQL Injection

      Online Rental Property Script "pid" SQL Injection

      CVE-2008-2035 (Xoops, xoops cube, backpack, bmsurvey, newbb_fileup, news_fileup, popnupblog)

 

Pixel