Directory traversal vulnerability in index.php in the Pagesetter 6.2.0 through 6.3.0 beta 5 module for PostNuke allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pagesetter | Postnuke_software_foundation | 6.2 (including) | 6.2 (including) |
Pagesetter | Postnuke_software_foundation | 6.3.0-beta_5 (including) | 6.3.0-beta_5 (including) |