PT-2008-3388 · Make Our Life Easy · Make Our Life Easy

Gold_M

·

Publicado

2008-04-16

·

Atualizado

2017-09-29

·

CVE-2008-1857

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Make our Life Easy (Mole) version 2.1.0
Description The issue allows remote attackers to read arbitrary files via directory traversal sequences in the dirn and fname parameters in the viewsource.php file.
Recommendations For Make our Life Easy (Mole) version 2.1.0, consider restricting access to the viewsource.php file until a patch is available, and avoid using the dirn and fname parameters in this file to minimize the risk of exploitation.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-1857

Produtos afetados

Make Our Life Easy