Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1861 (ExBB Italia)

BugsAlert Home > CVE-2008-1861 (ExBB Italia)
 
 

Directory traversal vulnerability in modules/threadstop/threadstop.php in ExBB Italia 0.22 and earlier, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the exbb[default_lang] parameter.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1861

Learn more about CVE-2008-1861 (ExBB Italia)
 
Tags: cve-2008-1861 exbb italia

Related Items

      CVE-2008-0995

      Sun Solaris "pthread_mutex_reltimedlock_np" Local Denial of Service

      MWOpen "id" SQL Injection Vulnerability

      Drupal BUEditor Module Cross-Site Request Forgery

      RedHat: Moderate: ruby security update

      Bugtraq: n.runs-SA-2008.005 - Apple Inc. - CoreServices Frameworkâ??s CarbonCore Framework - Arbitrary Code Execution (remote)

      FrSIRT - rPath Linux Security Update Fixes Kernel Denial of Service Vulnerability

 

Pixel