Vulnerabilities > CVE-2011-5075 - Unspecified vulnerability in Sitracker Support Incident Tracker

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
sitracker
exploit available

Summary

translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to obtain sensitive information via a direct request using the save action, which reveals the installation path.

Exploit-Db

descriptionSupport Incident Tracker <= 3.65 (translate.php) Remote Code Execution. CVE-2011-4337,CVE-2011-5075. Webapps exploit for php platform
fileexploits/php/webapps/18132.php
idEDB-ID:18132
last seen2016-02-02
modified2011-11-19
platformphp
port
published2011-11-19
reporterEgiX
sourcehttps://www.exploit-db.com/download/18132/
titleSupport Incident Tracker <= 3.65 translate.php Remote Code Execution
typewebapps