Directory traversal vulnerability in page.php in EntertainmentScript 1.4.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the page parameter.
References
Configurations
History
No history.
Information
Published : 2008-05-27 14:32
Updated : 2024-02-28 11:21
NVD link : CVE-2008-2459
Mitre link : CVE-2008-2459
CVE.ORG link : CVE-2008-2459
JSON object : View
Products Affected
entertainmentscript
- entertainmentscript
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')