5
CVSSv2

CVE-2004-0327

Published: 23/11/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 520
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in functions.php in PhpNewsManager 1.46 allows remote malicious users to retrieve arbitrary files via .. (dot dot) sequences in the clang parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

skintech phpnewsmanager 1.36

Exploits

<?php /* source: wwwsecurityfocuscom/bid/4026/info PHP's 'safe_mode' feature may be used to restrict access to certain areas of a filesystem by PHP scripts However, a problem has been discovered that may allow an attacker to bypass these restrictions to gain unauthorized access to areas of the filesystem that are restricted when PHP ...
<?php /* source: wwwsecurityfocuscom/bid/4026/info PHP's 'safe_mode' feature may be used to restrict access to certain areas of a filesystem by PHP scripts However, a problem has been discovered that may allow an attacker to bypass these restrictions to gain unauthorized access to areas of the filesystem that are restricted when PHP ...
source: wwwsecurityfocuscom/bid/9720/info phpNewsManager is prone to a file disclosure vulnerability Remote attackers may submit malicious requests to the software that contain directory traversal sequences, potentially exposing sensitive resources outside of the hosting web server root wwwexamplecom/functionsphp?clang=// ...
<?php /* source: wwwsecurityfocuscom/bid/4026/info PHP's 'safe_mode' feature may be used to restrict access to certain areas of a filesystem by PHP scripts However, a problem has been discovered that may allow an attacker to bypass these restrictions to gain unauthorized access to areas of the filesystem that are restricted when PHP ...