CVE-2007-4908 Information

Description

Directory traversal vulnerability in index.php in AuraCMS 2.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the pilih parameter.

Reference

http://osvdb.org/40504 http://secunia.com/advisories/26747 http://www.auracms.org/?pilih=news&aksi=lihat&id=117 http://www.securityfocus.com/bid/25619 https://exchange.xforce.ibmcloud.com/vulnerabilities/36541 https://www.exploit-db.com/exploits/4390

Share on: