Multiple directory traversal vulnerabilities in WebPortal CMS 0.8-beta allow remote malicious users to (1) read arbitrary files via directory traversal sequences in the lang parameter to libraries/helpdocs/help.php and (2) include and execute arbitrary local files via directory traversal sequences in the error parameter to index.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ivano culmine webportal cms 0.8 |