CVE-2009-2398

Publication date

2009-07-09 16:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in test/index.php in PHP-Sugar 0.80 allows remote attackers to read arbitrary files via a ..// (dot dot slash slash) in the t parameter.