Back to search
CVE-2008-3150
Published: Jul 11, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Directory traversal vulnerability in index.php in Neutrino Atomic Edition 0.8.4 allows remote attackers to read and modify files, as demonstrated by manipulating data/sess.php in (1) usb and (2) del_pag actions. NOTE: this can be leveraged for code execution by performing an upload that bypasses the intended access restrictions that were implemented in sess.php.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
neutrino-index-code-execution(43616)
vdb-entry
x_refsource_XF
30950
third-party-advisory
x_refsource_SECUNIA
30123
vdb-entry
x_refsource_BID
6018
exploit
x_refsource_EXPLOIT-DB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now