CVE-2008-6590 Information
Feb 14, 2021
cve
Description
Multiple directory traversal vulnerabilities in LightNEasy \no database\ (aka flat) version 1.2.2 and possibly SQLite version 1.2.2 allow remote attackers to read arbitrary files via a .. (dot dot) in the page parameter to (1) index.php and (2) LightNEasy.php.
Reference
http://secunia.com/advisories/29833 http://www.osvdb.org/44672 http://www.osvdb.org/44673 http://www.securityfocus.com/archive/1/491064/100/0/threaded http://www.securityfocus.com/bid/28839 https://exchange.xforce.ibmcloud.com/vulnerabilities/41889
Share on: