CVE Vulnerabilities

CVE-2006-4420

Published: Aug 28, 2006 | Modified: Oct 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in include_lang.php in Phaos 0.9.2 allows remote attackers to include arbitrary local files via .. sequences in the lang parameter.

Affected Software

Name Vendor Start Version End Version
Phaos Phaos 0.9 (including) 0.9 (including)
Phaos Phaos 0.9.1 (including) 0.9.1 (including)
Phaos Phaos 0.9.2 (including) 0.9.2 (including)

References