CVE-2008-6843

Directory traversal vulnerability in index.php in Fantastico, as used with cPanel 11.x, allows remote attackers to read arbitrary files via a .. (dot dot) in the sup3r parameter.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 70%
VendorProductVersion
netenbergfantastico_de_luxe
*
cpanelcpanel
11.4.19
cpanelcpanel
11.8.6:stable
cpanelcpanel
11.8.6_stable:_stable
cpanelcpanel
11.16
cpanelcpanel
11.18
cpanelcpanel
11.18.1
cpanelcpanel
11.18.2
cpanelcpanel
11.18.3
cpanelcpanel
11.18.4
cpanelcpanel
11.19.3
cpanelcpanel
11.21
cpanelcpanel
11.21:beta
cpanelcpanel
11.22
cpanelcpanel
11.22.1
cpanelcpanel
11.22.2
cpanelcpanel
11.22.3
cpanelcpanel
11.23.1:current
cpanelcpanel
11.23.1_current:_current
𝑥
= Vulnerable software versions