cb
cvebase
.
~
/
products
/
dazphp
/
dazphpnews
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
dazphp
/
Dazphp Dazphpnews
Dazphp Dazphpnews vulnerabilities
1 known vulnerability affecting
dazphp/dazphpnews
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
LOW
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2008-1696
P4
LOW
CVSS 3.7
PoC
v0.1-1
2008-04-08
CVE-2008-1696 [LOW] CWE-22 CVE-2008-1696: Directory traversal vulnerability in makepost.php in DaZPHPNews 0.1-1, when register_globals is enab Directory traversal vulnerability in makepost.php in DaZPHPNews 0.1-1, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the prefixdir parameter.
nvd
Dazphp Dazphpnews vulnerabilities | cvebase