CVE-2009-1768
22.05.2009, 18:30
Directory traversal vulnerability in download.php in Rama Zaiten CMS 0.9.8 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
| Vendor | Product | Version |
|---|---|---|
| ramazeiten | ramazaitencms0.9.7.5 | * |
| ramazeiten | ramazaitencms0.9.7.6 | * |
| ramazeiten | ramazaitencms0.9.7.8 | * |
| ramazeiten | ramazaitencms0.9.8 | * |
𝑥
= Vulnerable software versions
References