6.8
CVSSv2

CVE-2007-5694

Published: 29/10/2007 Updated: 15/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
VMScore: 685
Vector: AV:N/AC:L/Au:S/C:C/I:N/A:N

Vulnerability Summary

Absolute path traversal vulnerability in the translation module (translator.php) in SiteBar 3.3.8 allows remote authenticated users to read arbitrary files via an absolute path in the dir parameter, a different vulnerability than CVE-2007-5491.

Vulnerable Product Search on Vulmon Subscribe to Product

sitebar sitebar 3.3.8

Vendor Advisories

Several remote vulnerabilities have been discovered in sitebar, a web based bookmark manager written in PHP The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-5491 A directory traversal vulnerability in the translation module allows remote authenticated users to chmod arbitrary files to 0777 via ...

Exploits

source: wwwsecurityfocuscom/bid/26126/info SiteBar is prone to multiple input-validation vulnerabilities because it fails to properly sanitize user-supplied input These issues include: - A local file-include vulnerability - Multiple arbitrary-script-code-execution vulnerabilities - Multiple cross-site scripting vulnerabilities - A URI- ...