4.3
CVSSv2

CVE-2007-0118

Published: 09/01/2007 Updated: 16/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 450
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Multiple absolute path traversal vulnerabilities in EditTag 1.2 allow remote malicious users to read arbitrary files via an absolute pathname in the file parameter to (1) edittag.cgi, (2) edittag.pl, (3) edittag_mp.cgi, or (4) edittag_mp.pl.

Vulnerable Product Search on Vulmon Subscribe to Product

edittag edittag 1.2

Exploits

source: wwwsecurityfocuscom/bid/21890/info EditTag is prone to multiple directory-traversal vulnerabilities because the application fails to sufficiently sanitize user-supplied data Exploiting these issues may allow a remote attacker to access any file on the affected webserver Version 12 is vulnerable to this issue; other versions ...
source: wwwsecurityfocuscom/bid/21890/info EditTag is prone to multiple directory-traversal vulnerabilities because the application fails to sufficiently sanitize user-supplied data Exploiting these issues may allow a remote attacker to access any file on the affected webserver Version 12 is vulnerable to this issue; other versio ...
source: wwwsecurityfocuscom/bid/21890/info EditTag is prone to multiple directory-traversal vulnerabilities because the application fails to sufficiently sanitize user-supplied data Exploiting these issues may allow a remote attacker to access any file on the affected webserver Version 12 is vulnerable to this issue; other ...
source: wwwsecurityfocuscom/bid/21890/info EditTag is prone to multiple directory-traversal vulnerabilities because the application fails to sufficiently sanitize user-supplied data Exploiting these issues may allow a remote attacker to access any file on the affected webserver Version 12 is vulnerable to this issue; other ver ...