Multiple directory traversal vulnerabilities in Pandora FMS before 3.1.1 allow remote attackers to include and execute arbitrary local files via (1) the page parameter to ajax.php or (2) the id parameter to general/pandora_help.php, and allow remote attackers to include and execute, create, modify, or delete arbitrary local files via (3) the layout parameter to operation/agentes/networkmap.php.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2010-12-02T17:00:00
Updated: 2018-10-10T18:57:01
Reserved: 2010-11-17T00:00:00
Link: CVE-2010-4282
JSON object: View
NVD Information
Status : Modified
Published: 2010-12-02T17:15:00.597
Modified: 2018-10-10T20:07:59.367
Link: CVE-2010-4282
JSON object: View
Redhat Information
No data.
CWE