CVE-2008-2966 Information

Description

Directory traversal vulnerability in viewprofile.php in JaxUltraBB 2.0 and earlier allows remote attackers to read arbitrary local files via a .. (dot dot) in the user parameter. party information.

Reference

http://www.securityfocus.com/bid/29853 https://exchange.xforce.ibmcloud.com/vulnerabilities/43278 https://www.exploit-db.com/exploits/5877

Share on: