Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0840 (Light Blog)

BugsAlert Home > CVE-2008-0840 (Light Blog)
 
 

Directory traversal vulnerability in view_member.php in Public Warehouse LightBlog 9.6 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the username parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0840

Learn more about CVE-2008-0840 (Light Blog)
 
Tags: cve-2008-0840 light blog

Related Items

      MS08-048 - Important: Security Update for Outlook Express and Windows Mail (951066)

      Simple Machines Forum Cross-Site Scripting

      FrSIRT - Downline Goldmine newdownlinebuilder "id" SQL Injection Vulnerability

      Bugtraq: [SECURITY] [DSA 1679-1] New awstats packages fix cross-site scripting

      Vuln: Perl Perl_sv_vcatpvfn Format String Integer Wrap Vulnerability

      CVE-2008-3229 (op)

      HTML_DLOADER.KMD

 

Pixel