Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1125 (Podcast Generator)

BugsAlert Home > CVE-2008-1125 (Podcast Generator)
 
 

Multiple directory traversal vulnerabilities in Podcast Generator 1.0 BETA 2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) theme_path parameter to core/themes.php and the (2) filename parameter to download.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1125

Learn more about CVE-2008-1125 (Podcast Generator)
 
Tags: cve-2008-1125 podcast generator

Related Items

      CVE-2007-6523 (Opera)

      Fedora Security Update Fixes Tomboy Untrusted Search Path Weakness

      Debian: New python-cherrypy packages fix denial of service

      FrSIRT - Linux Kernel Security Bypass and Denial of Service Vulnerabilities

      asiCMS alpha 0.208 Multiple Remote File Inclusion Vulnerabilities

      Gentoo: yelp User-assisted execution of arbitrary code

      Debian: New mysql-dfsg-5.0 packages fix several

 

Pixel