7.5
CVSSv2

CVE-2008-2482

Published: 28/05/2008 Updated: 11/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in install_mod.php in insanevisions OneCMS 2.5 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the load parameter in a go action.

Vulnerable Product Search on Vulmon Subscribe to Product

insanevisions onecms 2.5

Exploits

Digital Security Research Group [DSecRG] Advisory #DSECRG-08-034 Application: OneCMS Versions Affected: 25 Vendor URL: wwwinsanevisionscom/ Bug: Local File Include Exploits: YES Reported: 26032008 Vendor Res ...