CVE-2008-4486
08.10.2008, 02:00
Directory traversal vulnerability in index.php in SAC.php (SACphp), as used in Yerba 6.3 and earlier, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.
Vendor | Product | Version |
---|---|---|
yerba | yerba | 𝑥 ≤ 6.3 |
yerba | yerba | 6.28 |
𝑥
= Vulnerable software versions
References