RSS   Vulnerabilities for 'Cauposhop pro'   RSS

2011-12-14
 
CVE-2011-4832

CWE-22
 

 
Directory traversal vulnerability in CaupoShop Pro 2.x, CaupoShop Classic 3.01, and CaupoShop Pro 3.70 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter in a template action.

 

 >>> Vendor: Caupo 2 Products
Cauposhop pro
Cauposhop classic


Copyright 2024, cxsecurity.com

 

Back to Top