CVE-2008-4158 Information

Description

Multiple directory traversal vulnerabilities in index.php in Zanfi CMS lite 1.2 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) flag and (2) inc parameters.

Reference

http://securityreason.com/securityalert/4290 https://exchange.xforce.ibmcloud.com/vulnerabilities/45027 https://www.exploit-db.com/exploits/6413

Share on: