Back to search
CVE-2008-3708
Published: Aug 19, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple directory traversal vulnerabilities in dotCMS 1.6.0.9 allow remote attackers to read arbitrary files via a .. (dot dot) in the id parameter to (1) news/index.dot and (2) getting_started/macros/macros_detail.dot.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
31516
third-party-advisory
x_refsource_SECUNIA
4163
third-party-advisory
x_refsource_SREASON
30703
vdb-entry
x_refsource_BID
dotcms-index-macrosdetail-file-include(44491)
vdb-entry
x_refsource_XF
6247
exploit
x_refsource_EXPLOIT-DB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now