Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
local file inclusion vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2010-4406
Directory traversal vulnerability in gallery.php in Brunetton LittlePhpGallery 1.0.2, when magic_quotes_gpc is disabled, allows remote malicious users to list, include, and execute arbitrary local files via a ..// (dot dot slash slash) in the repertoire parameter.
Brunetton Littlephpgallery 1.0.2
1 EDB exploit
7.5
CVSSv2
CVE-2015-3648
Directory traversal vulnerability in pages/setup.php in Montala Limited ResourceSpace prior to 7.2.6727 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the defaultlanguage parameter.
Montala Resourcespace
6.8
CVSSv2
CVE-2010-1936
Directory traversal vulnerability in scr/soustab.php in openMairie openComInterne 1.01, when register_globals is enabled, allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the dsn[phptype] parameter, a related issue to...
Openmairie Opencominterne 1.01
1 EDB exploit
5
CVSSv2
CVE-2008-6843
Directory traversal vulnerability in index.php in Fantastico, as used with cPanel 11.x, allows remote malicious users to read arbitrary files via a .. (dot dot) in the sup3r parameter.
Netenberg Fantastico De Luxe
Cpanel Cpanel 11.21
Cpanel Cpanel 11.8.6 Stable
Cpanel Cpanel 11.16
Cpanel Cpanel 11
Cpanel Cpanel 11.18.1
Cpanel Cpanel 11.18.3
Cpanel Cpanel 11.22.3
Cpanel Cpanel 11.18.4
Cpanel Cpanel 11.23.1 Current
Cpanel Cpanel 11.18.2
Cpanel Cpanel 11.22.1
Cpanel Cpanel 11.4.19
Cpanel Cpanel 11.8.6
Cpanel Cpanel 11.23.1
Cpanel Cpanel 11.22
Cpanel Cpanel 11.18
Cpanel Cpanel 11.19.3
Cpanel Cpanel 11.22.2
1 EDB exploit
6.8
CVSSv2
CVE-2010-4798
Directory traversal vulnerability in index.php in OrangeHRM 2.6.0.1 allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the uri parameter.
Orangehrm Orangehrm 2.6.0.1
1 EDB exploit
10
CVSSv2
CVE-2010-4931
Directory traversal vulnerability in maincore.php in PHP-Fusion allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the folder_level parameter. NOTE: this issue has been disputed by a reliable third party
Php-fusion Php-fusion -
1 EDB exploit
9
CVSSv2
CVE-2007-3266
Directory traversal vulnerability in webif.cgi in ifnet WEBIF allows remote malicious users to include and execute arbitrary local files a .. (dot dot) in the outconfig parameter.
Ifnet Webif.cgi
1 EDB exploit
5
CVSSv2
CVE-2006-7099
Directory traversal vulnerability in index.php in SolarPay allows remote malicious users to read certain files via a .. (dot dot) in the read parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Solarpay Solarpay .
1 EDB exploit
7.5
CVSSv2
CVE-2008-2672
Multiple directory traversal vulnerabilities in ErfurtWiki R1.02b and previous versions, when register_globals is enabled, allow remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the (1) ewiki_id and (2) ewiki_action parameters to fragments...
Erfurtwiki Erfurtwiki
1 EDB exploit
NA
CVE-2022-34125
front/icon.send.php in the CMDB plugin prior to 3.0.3 for GLPI allows malicious users to gain read access to sensitive information via a _log/ pathname in the file parameter.
Glpi-project Cmdb
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »