CVE-2009-4581
06.01.2010, 22:00
Directory traversal vulnerability in modules/admincp.php in RoseOnlineCMS 3 B1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the admin parameter.
Vendor | Product | Version |
---|---|---|
roseonlinecms | roseonlinecms | 𝑥 ≤ 3 |
𝑥
= Vulnerable software versions
References