CVE-2008-3589
EUVD-2008-357511.08.2008, 23:41
Directory traversal vulnerability in download.php in moziloCMS 1.10.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the cat parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mozilo | mozilocms | 1.10.1 |
𝑥
= Vulnerable software versions
References