Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0813 (XPWeb)

BugsAlert Home > CVE-2008-0813 (XPWeb)
 
 

Directory traversal vulnerability in Download.php in XPWeb 3.0.1, 3.3.2, and possibly other versions, allows remote attackers to read arbitrary files via a .. (dot dot) in the url parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0813

Learn more about CVE-2008-0813 (XPWeb)
 
Tags: cve-2008-0813 xpweb

Related Items

      CVE-2008-2045 (SugarCRM)

      WORM_VAKLIK.MU

      Urulu "connectionId" SQL Injection Vulnerability

      VU#127185: Apple Safari automatically executes downloaded files based on Internet Explorer zone settings

      Debian: New dovecot packages fix information disclosure

      FrSIRT - IBM WebSphere Application Server Cross Site Scripting Vulnerability

      CVE-2008-1225 (WebCT)

 

Pixel