CVE-2012-1112
06.09.2012, 18:55
Directory traversal vulnerability in Open-Realty CMS 2.5.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the select_users_template parameter to index.php.
Vendor | Product | Version |
---|---|---|
open-realty | open-realty | 𝑥 ≤ 2.5.8 |
open-realty | open-realty | 2.3.1 |
open-realty | open-realty | 2.3.4 |
𝑥
= Vulnerable software versions
References