Total vulnerabilities in the database
Directory traversal vulnerability in includes/controller.php in Pulse CMS Basic before 1.2.9 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter to index.php.
Software | From | Fixed in |
---|---|---|
pulsecms / pulse_cms | 1.2.1 | 1.2.1.x |
pulsecms / pulse_cms | 1.2.5 | 1.2.5.x |
pulsecms / pulse_cms | 1.0 | 1.0.x |
pulsecms / pulse_cms | 1.2.6 | 1.2.6.x |
pulsecms / pulse_cms | 1.18 | 1.18.x |
pulsecms / pulse_cms | 1.2 | 1.2.x |
pulsecms / pulse_cms | 1.2.4 | 1.2.4.x |
pulsecms / pulse_cms | 1.2.3 | 1.2.3.x |
pulsecms / pulse_cms | 1.2.2 | 1.2.2.x |
pulsecms / pulse_cms | 1.15 | 1.15.x |
pulsecms / pulse_cms | 1.01 | 1.01.x |
pulsecms / pulse_cms | - | 1.2.8.x |
pulsecms / pulse_cms | 1.17 | 1.17.x |
pulsecms / pulse_cms | 1.16 | 1.16.x |
pulsecms / pulse_cms | 1.1 | 1.1.x |
pulsecms / pulse_cms | 1.2.7 | 1.2.7.x |