CVE-2009-2313
02.07.2009, 10:30
Directory traversal vulnerability in index.php in Jinzora Media Jukebox 2.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the name parameter.
Vendor | Product | Version |
---|---|---|
jinzora | jinzora | 𝑥 ≤ 2.8 |
jinzora | jinzora | 0.1.1 |
jinzora | jinzora | 0.2 |
jinzora | jinzora | 0.3 |
jinzora | jinzora | 0.3:pre |
jinzora | jinzora | 0.3:pre_2 |
jinzora | jinzora | 0.3.1 |
jinzora | jinzora | 0.4 |
jinzora | jinzora | 0.5 |
jinzora | jinzora | 0.6.2 |
jinzora | jinzora | 0.7 |
jinzora | jinzora | 0.8.1 |
jinzora | jinzora | 0.8.2 |
jinzora | jinzora | 0.9 |
jinzora | jinzora | 0.9.1 |
jinzora | jinzora | 0.9.2 |
jinzora | jinzora | 0.9.3 |
jinzora | jinzora | 0.9.4 |
jinzora | jinzora | 0.9.5 |
jinzora | jinzora | 1.0.1 |
jinzora | jinzora | 1.1 |
jinzora | jinzora | 2.0 |
jinzora | jinzora | 2.0:beta_1 |
jinzora | jinzora | 2.0:beta_2 |
jinzora | jinzora | 2.0:rc1 |
jinzora | jinzora | 2.0:rc2 |
jinzora | jinzora | 2.0.1 |
jinzora | jinzora | 2.1 |
jinzora | jinzora | 2.2 |
jinzora | jinzora | 2.3 |
jinzora | jinzora | 2.3.1 |
jinzora | jinzora | 2.3.2 |
jinzora | jinzora | 2.3.3 |
jinzora | jinzora | 2.3.4 |
jinzora | jinzora | 2.3.5 |
jinzora | jinzora | 2.3.6 |
jinzora | jinzora | 2.3.7 |
jinzora | jinzora | 2.5 |
jinzora | jinzora | 2.5.1 |
jinzora | jinzora | 2.6 |
jinzora | jinzora | 2.6.1 |
jinzora | jinzora | 2.7 |
jinzora | jinzora | 2.7.5 |
𝑥
= Vulnerable software versions