CVE-2009-0886
12.03.2009, 15:20
Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the default_language parameter.
Vendor | Product | Version |
---|---|---|
oneorzero | oneorzero_helpdesk | 𝑥 ≤ 1.6.5.7 |
oneorzero | oneorzero_helpdesk | 1.4_rc4:_rc4 |
oneorzero | oneorzero_helpdesk | 1.6 |
oneorzero | oneorzero_helpdesk | 1.6.3 |
oneorzero | oneorzero_helpdesk | 1.6.3.0 |
oneorzero | oneorzero_helpdesk | 1.6.4 |
oneorzero | oneorzero_helpdesk | 1.6.4.1 |
oneorzero | oneorzero_helpdesk | 1.6.4.2 |
oneorzero | oneorzero_helpdesk | 1.6.5.3 |
oneorzero | oneorzero_helpdesk | 1.6.5.4 |
𝑥
= Vulnerable software versions
References