5
CVSSv2

CVE-2008-6591

Published: 03/04/2009 Updated: 11/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

LightNEasy "no database" (aka flat) version 1.2.2, and possibly SQLite version 1.2.2, allows remote malicious users to create arbitrary files via the page parameter to (1) index.php and (2) LightNEasy.php.

Vulnerable Product Search on Vulmon Subscribe to Product

lightneasy lightneasy 1.2.2