cve/2012/CVE-2012-2227.md
2025-09-29 21:09:30 +02:00

684 B

CVE-2012-2227

Description

Directory traversal vulnerability in update/index.php in PluXml before 5.1.6 allows remote attackers to include and execute arbitrary local files via a ..%2F (encoded dot dot slash) in the default_lang parameter.

POC

Reference

Github

No PoCs found on GitHub currently.