7.5
CVSSv2

CVE-2011-4832

Published: 15/12/2011 Updated: 29/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in CaupoShop Pro 2.x, CaupoShop Classic 3.01, and CaupoShop Pro 3.70 and previous versions allows remote malicious users to read arbitrary files via a .. (dot dot) in the template parameter in a template action.

Vulnerable Product Search on Vulmon Subscribe to Product

caupo cauposhop pro 2.1

caupo cauposhop pro 2.0

caupo cauposhop classic 3.01

caupo cauposhop pro

Exploits

CaupoShop Pro (2x/ <= 370) Local File Include Vulnerability ----------------------------------------------------------------------------------------- # Vuln Softwares : CaupoShop Pro 2x CaupoShop Classic 301 CaupoShop Pro 370 # Discovered By : Rami Salama #Contact : engramisalama_[at]_gmail_[dot]_com # Vendor : http ...