Security Advisory

CVE-2014-8676

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-08-31 22:00:00
Last updated 2024-08-06 13:26:02
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in the file_get_contents function in SOPlanning 1.32 and earlier allows remote attackers to determine the existence of arbitrary files via a .. (dot dot) in a URL path parameter.