Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3568 (unak-cms)

BugsAlert Home > CVE-2008-3568 (unak-cms)
 
 

Absolute path traversal vulnerability in fckeditor/editor/filemanager/browser/default/connectors/php/connector.php in UNAK-CMS 1.5.5 allows remote attackers to include and execute arbitrary local files via a full pathname in the Dirroot parameter, a different vulnerability than CVE-2006-4890.1.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3568

Learn more about CVE-2008-3568 (unak-cms)
 
Tags: cve-2008-3568 unak-cms

Related Items

      BAT_DELF.OAU

      Mandriva: Updated libxfont packages fix font handling

      MS08-066 ? Important: Vulnerability in the Microsoft Ancillary Function Driver Could Allow Elevation of Privilege (956803) - Version:1.0

      CVE-2008-2742 (Achievo)

      FrSIRT - Dokeos Unspecified Code Execution and Cross Site Scripting Issues

      CVE-2008-0836 (Solaris)

      WORM_NUWAR.ACE

 

Pixel