Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0489 (Clansphere)

BugsAlert Home > CVE-2008-0489 (Clansphere)
 
 

Directory traversal vulnerability in install.php in Clansphere 2007.4.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0489

Learn more about CVE-2008-0489 (Clansphere)
 
Tags: cve-2008-0489 clansphere

Related Items

      MS05-053: Vulnerabilities in Graphics Rendering Engine Could Allow Code Execution (896424) - Version:1.2

      Red Hat update for libxml2

      Apple Safari Multiple Vulnerabilities

      NOAH Unspecified Cross-Site Scripting Vulnerability

      Vuln: Joomla! and Mambo FacileForms Component 'ff_compath' Parameter Remote File Include Vulnerability

      CVE-2008-4664 (qvod_player)

      CVE-2008-2108 (PHP)

 

Pixel