Directory traversal vulnerability in wordtube-button.php in the wordTube 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the wpPATH parameter.
References
Configurations
History
No history.
Information
Published : 2007-05-03 17:19
Updated : 2024-02-28 11:01
NVD link : CVE-2007-2482
Mitre link : CVE-2007-2482
CVE.ORG link : CVE-2007-2482
JSON object : View
Products Affected
ruben_boelinger
- wordtube
CWE