5
CVSSv2

CVE-2005-4095

Published: 08/12/2005 Updated: 20/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in connector.php in the fckeditor2rc2 addon in DoceboLMS 2.0.4 allows remote malicious users to list arbitrary files and directories via ".." sequences in the Type parameter in a GetFoldersAndFiles command.

Affected Products

Vendor Product Versions
DocebolmsDocebolms2.0.4

Exploits

<?php # ---docebo_204_xplphp 1538 04/12/2005 # # # # DoceboLMS AKA SpaghettiLearning<= 204 connectorphp Shell Upload # # coded by rgod # # ...