PT-2008-3388 · Make Our Life Easy · Make Our Life Easy

Gold_M

·

Published

2008-04-16

·

Updated

2017-09-29

·

CVE-2008-1857

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Make our Life Easy (Mole) version 2.1.0
Description The issue allows remote attackers to read arbitrary files via directory traversal sequences in the dirn and fname parameters in the viewsource.php file.
Recommendations For Make our Life Easy (Mole) version 2.1.0, consider restricting access to the viewsource.php file until a patch is available, and avoid using the dirn and fname parameters in this file to minimize the risk of exploitation.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-1857

Affected Products

Make Our Life Easy