CVE-2008-4486 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in index.php in SAC.php (SACphp) as used in Yerba 6.3 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.
Reference
http://secunia.com/advisories/32093 http://securityreason.com/securityalert/4368 http://www.securityfocus.com/archive/1/497103 http://www.securityfocus.com/bid/31606 http://www.vupen.com/english/advisories/2008/2754 https://exchange.xforce.ibmcloud.com/vulnerabilities/45708 https://www.exploit-db.com/exploits/6687
Share on: