RSS   Vulnerabilities for 'Ezrecipe-zee'   RSS

2009-10-13
 
CVE-2009-3694

CWE-22
 

 
Directory traversal vulnerability in config/config.php in ezRecipe-Zee 91, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cfg[prePath] parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top