Directory traversal vulnerability in member.php in the eBoard 1.0.7 module for PHP-Nuke allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the GLOBALS[name] parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Eboard_module | Php-nuke | 1.0.7 (including) | 1.0.7 (including) |