CVE Vulnerabilities

CVE-2005-3929

Published: Nov 30, 2005 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in the create function in xarMLSXML2PHPBackend.php in Xaraya 1.0 allows remote attackers to create directories and overwrite arbitrary files via .. sequences in the module parameter to index.php.

Affected Software

Name Vendor Start Version End Version
Xaraya Xaraya 1.0_rc1 (including) 1.0_rc1 (including)
Xaraya Xaraya 1.0_rc2 (including) 1.0_rc2 (including)
Xaraya Xaraya 1.0_rc3 (including) 1.0_rc3 (including)
Xaraya Xaraya 1.0_rc4 (including) 1.0_rc4 (including)

References