CVE-2009-4512 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in index.php in Oscailt 3.3 when Use Friendly URL’s is disabled allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the obj_id parameter.
Reference
http://packetstormsecurity.org/0910-exploits/oscailt33-lfi.txt http://secunia.com/advisories/37180 http://securityreason.com/exploitalert/7422 http://www.vupen.com/english/advisories/2009/3096 https://exchange.xforce.ibmcloud.com/vulnerabilities/54023
Share on: