Lucene search

K
cvelistMitreCVELIST:CVE-2008-0196
HistoryJan 10, 2008 - 12:00 a.m.

CVE-2008-0196

2008-01-1000:00:00
mitre
www.cve.org
6

AI Score

6.8

Confidence

Low

EPSS

0.005

Percentile

76.7%

Multiple directory traversal vulnerabilities in WordPress 2.0.11 and earlier allow remote attackers to read arbitrary files via a … (dot dot) in (1) the page parameter to certain PHP scripts under wp-admin/ or (2) the import parameter to wp-admin/admin.php, as demonstrated by discovering the full path via a request for the ....\wp-config pathname; and allow remote attackers to modify arbitrary files via a … (dot dot) in the file parameter to wp-admin/templates.php.

AI Score

6.8

Confidence

Low

EPSS

0.005

Percentile

76.7%