4.3
CVSSv2

CVE-2009-3149

Published: 10/09/2009 Updated: 19/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in _css/js.php in Elgg 1.5, when magic_quotes_gpc is disabled, allows remote malicious users to read arbitrary files via a .. (dot dot) in the js parameter. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

curveriderhq elgg 1.5

Exploits

Product: elggorg Version: <= 15 Dork: "Powered by Elgg, the leading open source social networking platform" eLwaux(c)2009 UASCorgUA POC: /_css/jsphp?js=////tmp/session_dir%00&viewtype=xD need: in table `datalists` must be record `simplecache_enabled` = 0 (default `simplecache_enabled ` = 1) Vulnerability Code: ------------- ...