Security Advisory

CVE-2008-3710

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2008-08-19 19:10:00
Last updated 2024-08-07 09:52:59
Assigner mitre
State PUBLISHED

Description

Multiple directory traversal vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) script_path parameter to (a) options.php and the (2) lang_code parameter to (b) copy_vip.php and (c) process_edit_board.php in adminopts/. NOTE: some of these vectors might not be vulnerabilities under proper installation.