5
CVSSv2

CVE-2011-4948

Published: 31/08/2012 Updated: 03/09/2012
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in admin/remote.php in EGroupware Enterprise Line (EPL) prior to 11.1.20110804-1 and EGroupware Community Edition prior to 1.8.001.20110805 allows remote malicious users to read arbitrary files via a ..%2f (encoded dot dot slash) in the type parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

egroupware egroupware

egroupware egroupware enterprise line