Vulnerabilities > CVE-2006-2105 - Local File Include vulnerability in Jupiter CMS 1.1.4/1.1.5

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
jupiter-cms

Summary

Directory traversal vulnerability in index.php in Jupiter CMS 1.1.4 and 1.1.5 allows remote attackers to read arbitrary files via ".." sequences terminated by a %00 (null) character in the n parameter.

Vulnerable Configurations

Part Description Count
Application
Jupiter_Cms
2