CVE-2009-2313

Directory traversal vulnerability in index.php in Jinzora Media Jukebox 2.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the name parameter.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 73%
VendorProductVersion
jinzorajinzora
𝑥
≤ 2.8
jinzorajinzora
0.1.1
jinzorajinzora
0.2
jinzorajinzora
0.3
jinzorajinzora
0.3:pre
jinzorajinzora
0.3:pre_2
jinzorajinzora
0.3.1
jinzorajinzora
0.4
jinzorajinzora
0.5
jinzorajinzora
0.6.2
jinzorajinzora
0.7
jinzorajinzora
0.8.1
jinzorajinzora
0.8.2
jinzorajinzora
0.9
jinzorajinzora
0.9.1
jinzorajinzora
0.9.2
jinzorajinzora
0.9.3
jinzorajinzora
0.9.4
jinzorajinzora
0.9.5
jinzorajinzora
1.0.1
jinzorajinzora
1.1
jinzorajinzora
2.0
jinzorajinzora
2.0:beta_1
jinzorajinzora
2.0:beta_2
jinzorajinzora
2.0:rc1
jinzorajinzora
2.0:rc2
jinzorajinzora
2.0.1
jinzorajinzora
2.1
jinzorajinzora
2.2
jinzorajinzora
2.3
jinzorajinzora
2.3.1
jinzorajinzora
2.3.2
jinzorajinzora
2.3.3
jinzorajinzora
2.3.4
jinzorajinzora
2.3.5
jinzorajinzora
2.3.6
jinzorajinzora
2.3.7
jinzorajinzora
2.5
jinzorajinzora
2.5.1
jinzorajinzora
2.6
jinzorajinzora
2.6.1
jinzorajinzora
2.7
jinzorajinzora
2.7.5
𝑥
= Vulnerable software versions