CVE-2007-1158
Directory traversal vulnerability in index.php in the Pagesetter 6.2.0 through 6.3.0 beta 5 module for PostNuke allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter.
- Affected products
- Postnuke
- Postnuke Software Foundation Pagesetter
- = 6.2, 6.3.0
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 4.3% (90th percentile)
- NVD status
- Modified
- Published
- 2007-02-28
CVE-2007-1158 at NVD
1 known exploit for CVE-2007-1158
Proof-of-concept code and exploit modules indexed by Sploitus