Security Advisory

CVE-2008-2217

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2008-05-14 18:00:00
Last updated 2024-08-07 08:49:58
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in cm/graphie.php in Content Management System 0.6.1 for Phprojekt allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cm_imgpath parameter.