CVE-2005-1699

3 documents3 sources
Severity
4.0MEDIUM
EPSS
0.3%
top 44.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 24
Latest updateMay 1

Description

Directory traversal vulnerability in pnadminapi.php in the Xanthia module in PostNuke 0.760-RC3 allows remote administrators to read arbitrary files via a .. (dot dot) in the skin parameter.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-xj98-p7g3-6rjv: Directory traversal vulnerability in pnadminapi2022-05-01
CVEList
CVE-2005-1699: Directory traversal vulnerability in pnadminapi2005-05-24
CVE-2005-1699 (MEDIUM CVSS 4) | Directory traversal vulnerability i | cvebase.io