cve/2008/CVE-2008-7178.md
2024-05-26 14:27:05 +02:00

659 B

CVE-2008-7178

Description

Directory traversal vulnerability in Uploader module 1.1 for XOOPS allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter in a downloadfile action to index.php.

POC

Reference

Github

No PoCs found on GitHub currently.