5
CVSSv2

CVE-2004-1426

Published: 31/12/2004 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in index.php in KorWeblog 1.6.2-cvs and previous versions allows remote malicious users to read arbitrary files and execute arbitrary PHP files via .. (dot dot) sequences in the lng parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

korweblog korweblog 1.6.1

korweblog korweblog 1.6.2cvs