CVE-2010-2850
25.07.2010, 02:04
Directory traversal vulnerability in productionnu2/fileuploader.php in nuBuilder 10.04.20, and possibly other versions before 10.07.12, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the dir parameter.
Vendor | Product | Version |
---|---|---|
nusoftware | nubuilder | 𝑥 ≤ 10.04.20 |
nusoftware | nubuilder | 09.06.10 |
nusoftware | nubuilder | 09.06.26 |
nusoftware | nubuilder | 09.07.24 |
nusoftware | nubuilder | 09.08.20 |
nusoftware | nubuilder | 09.09.23 |
𝑥
= Vulnerable software versions
References