RSS   Vulnerabilities for 'Wordtube'   RSS

2007-05-03
 
CVE-2007-2482

CWE-Other
 

 
Directory traversal vulnerability in wordtube-button.php in the wordTube 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the wpPATH parameter.

 
 
CVE-2007-2481

CWE-Other
 

 
PHP remote file inclusion vulnerability in wordtube-button.php in the wordTube 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parameter.

 

 >>> Vendor: Ruben boelinger 3 Products
Wordtube
Wp-table
Myflash


Copyright 2024, cxsecurity.com

 

Back to Top