Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-2227

Опубликовано: 14 мая 2008
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Multiple directory traversal vulnerabilities in PHP-Fusion Forum Rank System 6 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the settings[locale] parameter to (1) forum.php and (2) profile.php in infusions/rank_system/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:php-fusion:forum_rank_system:6:*:*:*:*:*:*:*

EPSS

Процентиль: 83%
0.01926
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

github
почти 4 года назад

Multiple directory traversal vulnerabilities in PHP-Fusion Forum Rank System 6 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the settings[locale] parameter to (1) forum.php and (2) profile.php in infusions/rank_system/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS

Процентиль: 83%
0.01926
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-22