CVE Database
/

CVE-2008-4712

Back to search

CVE-2008-4712

Published: Oct 23, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Directory traversal vulnerability in pages/showblog.php in LnBlog 0.9.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the plugin parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

32032
third-party-advisory
x_refsource_SECUNIA
4481
third-party-advisory
x_refsource_SREASON
31459
vdb-entry
x_refsource_BID
6601
exploit
x_refsource_EXPLOIT-DB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now