4
CVSSv2

CVE-2005-0253

Published: 02/05/2005 Updated: 02/02/2024
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

Directory traversal vulnerability in index.php for BibORB 1.3.2, and possibly earlier versions, allows remote malicious users to delete arbitrary files via a Delete action and .. (dot dot) sequences in the database_name parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

guillaumegardey biborb 1.3.2

Exploits

source: wwwsecurityfocuscom/bid/12583/info BibORB is reported prone to multiple vulnerabilities arising from insufficient sanitization of user-supplied input These issues can be exploited by a remote attacker to carry out cross-site scripting, HTML injection, SQL injection, directory traversal, and arbitrary file upload attacks ...