Directory traversal vulnerability in editor_registry.php in XOOPS 2.2.3 allows remote attackers to read or include arbitrary local files via a .. (dot dot) in the xoopsConfig[language] parameter.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2005-11-18T23:00:00
Updated: 2016-10-17T13:57:01
Reserved: 2005-11-18T00:00:00
Link: CVE-2005-3680
JSON object: View
NVD Information
Status : Modified
Published: 2005-11-18T23:03:00.000
Modified: 2016-10-18T03:36:48.380
Link: CVE-2005-3680
JSON object: View
Redhat Information
No data.
CWE