Back to search
CVE-2007-5055
Published: Sep 24, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple directory traversal vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the admin_home parameter to modules/poll/poll_summary.php or (2) the rootdp parameter to include/db.php.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
26931
third-party-advisory
x_refsource_SECUNIA
izicontents-adminhome-rootdp-file-include(36735)
vdb-entry
x_refsource_XF
4441
exploit
x_refsource_EXPLOIT-DB
ADV-2007-3260
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now