CVE-2009-3149
Published Sep 10, 2009Directory traversal vulnerability in _css/js.php in Elgg 1.5, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the js param…
Vendor archive
1 CVEs tagged to vendor curveriderhq — 0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
Directory traversal vulnerability in _css/js.php in Elgg 1.5, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the js param…