Vulnerabilities > CVE-2007-3547 - Local File Include vulnerability in Qt-Cute Quickticket 1.2

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
NONE
Availability impact
NONE
network
low complexity
qt-cute
exploit available

Summary

Directory traversal vulnerability in qti_checkname.php in QuickTicket 1.2 allows remote attackers to include and execute arbitrary local files a .. (dot dot) in the lang parameter.

Vulnerable Configurations

Part Description Count
Application
Qt-Cute
1

Exploit-Db

descriptionQuickTicket 1.2 (qti_checkname.php) Local File Inclusion Vulnerability. CVE-2007-3547. Webapps exploit for php platform
fileexploits/php/webapps/4116.txt
idEDB-ID:4116
last seen2016-01-31
modified2007-06-27
platformphp
port
published2007-06-27
reporterKatatafish
sourcehttps://www.exploit-db.com/download/4116/
titleQuickTicket 1.2 qti_checkname.php Local File Inclusion Vulnerability
typewebapps