RSS   Vulnerabilities for 'Web-cp'   RSS

2009-01-28
 
CVE-2008-6002

CWE-22
 

 
Absolute path traversal vulnerability in sendfile.php in web-cp 0.5.7, when register_globals is enabled, allows remote attackers to read arbitrary files via a full pathname in the filelocation parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top