Vulnerabilities > Phpkobo > Address Book Script > Medium

DATE CVE VULNERABILITY TITLE RISK
2010-03-23 CVE-2010-1059 Path Traversal vulnerability in PHPkobo Address Book Script 1.09
Directory traversal vulnerability in staff/app/common.inc.php in Phpkobo Address Book Script 1.09, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the LANG_CODE parameter.
network
phpkobo CWE-22
6.8
2010-03-23 CVE-2010-1058 Path Traversal vulnerability in PHPkobo Address Book Script 1.09
Directory traversal vulnerability in codelib/cfg/common.inc.php in Phpkobo Address Book Script 1.09, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a ..
network
phpkobo CWE-22
6.8