Vulnerabilities > CVE-2007-3523 - Unspecified vulnerability in Groupeclan.Free.Fr Xcms 1.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN groupeclan-free-fr
exploit available
Summary
Multiple directory traversal vulnerabilities in Module/Galerie.php in XCMS 1.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) Ent or (2) Lang parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | XCMS 1.1 (Galerie.php) Local File Inclusion Vulnerabilities. CVE-2007-3523. Webapps exploit for php platform |
file | exploits/php/webapps/4131.txt |
id | EDB-ID:4131 |
last seen | 2016-01-31 |
modified | 2007-06-30 |
platform | php |
port | |
published | 2007-06-30 |
reporter | BlackNDoor |
source | https://www.exploit-db.com/download/4131/ |
title | XCMS 1.1 Galerie.php Local File Inclusion Vulnerabilities |
type | webapps |
References
- http://osvdb.org/38963
- http://osvdb.org/38963
- http://www.securityfocus.com/bid/24724
- http://www.securityfocus.com/bid/24724
- http://www.vupen.com/english/advisories/2007/2409
- http://www.vupen.com/english/advisories/2007/2409
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35191
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35191
- https://www.exploit-db.com/exploits/4131
- https://www.exploit-db.com/exploits/4131