Lucene search

K
cvelistMitreCVELIST:CVE-2009-1912
HistoryJun 04, 2009 - 4:00 p.m.

CVE-2009-1912

2009-06-0416:00:00
mitre
www.cve.org

8 High

AI Score

Confidence

Low

0.016 Low

EPSS

Percentile

87.3%

Directory traversal vulnerability in src/func/language.php in webSPELL 4.2.0e and earlier allows remote attackers to include and execute arbitrary local .php files via a … (dot dot) in a language cookie. NOTE: this can be leveraged for SQL injection by including awards.php.

8 High

AI Score

Confidence

Low

0.016 Low

EPSS

Percentile

87.3%

Related for CVELIST:CVE-2009-1912