Vulnerabilities > WEB WIZ

DATE CVE VULNERABILITY TITLE RISK
2008-01-29 CVE-2008-0481 Path Traversal vulnerability in web WIZ Rich Text Editor 4.0
Directory traversal vulnerability in RTE_file_browser.asp in Web Wiz Rich Text Editor 4.0 allows remote attackers to list arbitrary directories, and .txt and .zip files, via a .....\\\ in the sub parameter in a save action.
network
low complexity
web-wiz CWE-22
5.0
2008-01-29 CVE-2008-0480 Path Traversal vulnerability in web WIZ web WIZ Forums
Multiple directory traversal vulnerabilities in Web Wiz Forums 9.07 and earlier allow remote attackers to list arbitrary directories, and .txt and .zip files, via a .....\\\ in the sub parameter to (1) RTE_file_browser.asp or (2) file_browser.asp.
network
low complexity
web-wiz CWE-22
5.0
2008-01-29 CVE-2008-0479 Path Traversal vulnerability in web WIZ Newspad 1.02
Directory traversal vulnerability in RTE_file_browser.asp in Web Wiz NewsPad 1.02 allows remote attackers to list arbitrary directories, and .txt and .zip files, via a .....\\\ in the sub parameter.
network
low complexity
web-wiz CWE-22
5.0
2008-01-29 CVE-2008-0473 Improper Input Validation vulnerability in web WIZ Rich Text Editor 4.0
RTE_popup_save_file.asp in Web Wiz Rich Text Editor 4.0 allows remote attackers to upload (1) .html and (2) .htm files via unspecified vectors.
network
low complexity
web-wiz CWE-20
6.4