CVE-2008-1231 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in Edit.jsp in JSPWiki 2.4.104 and 2.5.139 allows remote attackers to include and execute arbitrary local .jsp files and obtain sensitive information via a .. (dot dot) in the editor parameter.
Reference
http://marc.info/?l=bugtraq&m=120300554011544&w=2 http://secunia.com/advisories/28969 http://www.bugsec.com/articles.php?Security=48&Web-Application-Firewall=0 http://www.securityfocus.com/bid/27785 https://exchange.xforce.ibmcloud.com/vulnerabilities/40508 https://www.exploit-db.com/exploits/5112
Share on: