CVE-2008-4718
23.10.2008, 20:00
Directory traversal vulnerability in help/mini.php in X7 Chat 2.0.1 A1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the help_file parameter, a different vector than CVE-2006-2156.
Vendor | Product | Version |
---|---|---|
x7_group | x7_chat | 𝑥 ≤ 2.0.1 |
x7_group | x7_chat | 1.0.0b:b |
x7_group | x7_chat | 1.1.1b:b |
x7_group | x7_chat | 1.1.2b:b |
x7_group | x7_chat | 1.2.0b:b |
x7_group | x7_chat | 1.3.0b:b |
x7_group | x7_chat | 1.3.1b:b |
x7_group | x7_chat | 1.3.2b:b |
x7_group | x7_chat | 1.3.3b:b |
x7_group | x7_chat | 1.3.4b:b |
x7_group | x7_chat | 1.3.5b:b |
x7_group | x7_chat | 1.3.6 |
x7_group | x7_chat | 2.0.0 |
𝑥
= Vulnerable software versions
References