Vulnerabilities > Mini PUB > Mini PUB > 0.1.1

DATE CVE VULNERABILITY TITLE RISK
2009-01-22 CVE-2008-5936 Information Exposure vulnerability in Mini-Pub 0.1/0.1.1/0.1.2
front-end/edit.php in mini-pub 0.3 and earlier allows remote attackers to read files and obtain PHP source code via a filename in the sFileName parameter.
network
low complexity
mini-pub CWE-200
5.0
2009-01-12 CVE-2008-5883 Path Traversal vulnerability in Mini-Pub 0.1/0.1.1/0.1.2
Absolute path traversal vulnerability in front-end/dir.php in mini-pub 0.3 and earlier allows remote attackers to list arbitrary directories via a full pathname in the sDir parameter.
network
low complexity
mini-pub CWE-22
7.8