Vulnerabilities > CVE-2004-1505 - Unspecified vulnerability in Salims Softhouse JAF CMS 3.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Directory traversal vulnerability in index.php in Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to read arbitrary files and possibly execute PHP code via a .. (dot dot) in the show parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://echo.or.id/adv/adv08-y3dips-2004.txt
- http://echo.or.id/adv/adv08-y3dips-2004.txt
- http://marc.info/?l=bugtraq&m=110004150430309&w=2
- http://marc.info/?l=bugtraq&m=110004150430309&w=2
- http://secunia.com/advisories/13104
- http://secunia.com/advisories/13104
- http://www.securityfocus.com/bid/11627
- http://www.securityfocus.com/bid/11627
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17983
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17983