Lucene search

K
cve[email protected]CVE-2008-0840
HistoryFeb 20, 2008 - 9:44 p.m.

CVE-2008-0840

2008-02-2021:44:00
CWE-22
web.nvd.nist.gov
18
nvd
cve-2008-0840
directory traversal
public warehouse lightblog 9.6
security vulnerability

4.4 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

7.1 High

AI Score

Confidence

High

0.012 Low

EPSS

Percentile

85.0%

Directory traversal vulnerability in view_member.php in Public Warehouse LightBlog 9.6 allows remote attackers to include and execute arbitrary local files via a … (dot dot) in the username parameter.

Affected configurations

NVD
Node
publicwarehouselightblogMatch9.6

4.4 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

7.1 High

AI Score

Confidence

High

0.012 Low

EPSS

Percentile

85.0%

Related for CVE-2008-0840