TROYANOSYVIRUS
Voltar para CVEs

CVE-2008-1231

N/A

Descricao

Directory traversal vulnerability in Edit.jsp in JSPWiki 2.4.104 and 2.5.139 allows remote attackers to include and execute arbitrary local .jsp files, and obtain sensitive information, via a .. (dot dot) in the editor parameter.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado3/10/2008
Ultima modificacao4/9/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

jspwiki:jspwiki

Fraquezas (CWE)

CWE-22

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.