Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0559 (Nilsons Blogger)

BugsAlert Home > CVE-2008-0559 (Nilsons Blogger)
 
 

Multiple directory traversal vulnerabilities in Nilson's Blogger 0.11 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the permalink parameter in core.php, accessed through index.php; and (2) the thispost parameter in comments.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0559

Learn more about CVE-2008-0559 (Nilsons Blogger)
 
Tags: cve-2008-0559 nilsons blogger

Related Items

      FrSIRT - Cisco Unified Presence Remote Denial of Service Vulnerabilities

      Fedora update for clamav

      Ad-Exchange Script "id" SQL Injection Vulnerability

      Vuln: Merak Mail Server and Webmail Email Message HTML Injection Vulnerability

      CVE-2008-2692 (com_yvcomment)

      Debian: New postfix packages fix privilege escalation

      CVE-2008-4661 (page_improvements)

 

Pixel