CVE Vulnerabilities

CVE-2005-1840

Published: Jun 02, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in class.layout_phpcms.php in phpCMS 1.2.x before 1.2.1pl2 allows remote attackers to read or include arbitrary files, as demonstrated using a .. (dot dot) in the language parameter to parser.php.

Affected Software

Name Vendor Start Version End Version
Phpcms Phpcms 1.2.0 (including) 1.2.0 (including)
Phpcms Phpcms 1.2.1 (including) 1.2.1 (including)
Phpcms Phpcms 1.2.1_p12 (including) 1.2.1_p12 (including)
Phpcms Phpcms 1.2.1_pl1 (including) 1.2.1_pl1 (including)

References