PT-2007-6199 · Wordsmith · Wordsmith
Shockshadow
·
Published
2007-09-26
·
Updated
2017-09-29
·
CVE-2007-5103
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Wordsmith version 1.0 RC1
Description
The issue allows remote attackers to include and execute arbitrary local files due to a directory traversal vulnerability in the config.inc.php file when register globals is enabled. This is achieved by using a .. (dot dot) in the
path parameter.Recommendations
For Wordsmith version 1.0 RC1, consider disabling the register globals setting to mitigate the risk of exploitation. Additionally, restrict access to the config.inc.php file and avoid using the
path parameter until a fix is available.Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wordsmith