CVE-2008-2650
MEDIUM 6.8EPSS 18.8%
Directory traversal vulnerability in cmsimple/cms.php in CMSimple 3.1, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the sl parameter to index.php. NOTE: this can be leveraged for remote file execution by including adm.php and then invoking the upload action. NOTE: on 20080601, the vendor patched 3.1 without changing the version number.
- CVSS v2.0
- 6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P - EPSS
- 18.81% chance of exploitation in the next 30 days, 97th percentile
- Nuclei
- medium · CWE-22
- Published
- 2008-06-10
- Updated
- 2024-08-07