Total vulnerabilities in the database
Directory traversal vulnerability in languages_cgi.php in Simple PHP Blog 0.5.1 and earlier allows remote authenticated users to include and execute arbitrary local files via a .. (dot dot) in the blog_language1 parameter.
Software | From | Fixed in |
---|---|---|
alexander_palmo / simple_php_blog | - | 0.5.1.x |
alexander_palmo / simple_php_blog | 0.3.7c | 0.3.7c.x |
alexander_palmo / simple_php_blog | 0.4.7 | 0.4.7.x |
alexander_palmo / simple_php_blog | 0.4.6 | 0.4.6.x |
alexander_palmo / simple_php_blog | 0.4.7.1 | 0.4.7.1.x |
alexander_palmo / simple_php_blog | 0.4.5 | 0.4.5.x |
alexander_palmo / simple_php_blog | 0.4.0 | 0.4.0.x |
alexander_palmo / simple_php_blog | 0.5.0.1 | 0.5.0.1.x |