Vulnerabilities > Roseonlinecms

DATE CVE VULNERABILITY TITLE RISK
2010-01-06 CVE-2009-4581 Path Traversal vulnerability in Roseonlinecms
Directory traversal vulnerability in modules/admincp.php in RoseOnlineCMS 3 B1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the admin parameter.
network
low complexity
roseonlinecms CWE-22
critical
9.8
2007-03-23 CVE-2007-1636 Local File Include vulnerability in Roseonlinecms 3B1
Directory traversal vulnerability in index.php in RoseOnlineCMS 3 B1 allows remote attackers to include arbitrary files via a ..
network
low complexity
roseonlinecms
7.5