CVE-2009-4383

Directory traversal vulnerability in Pforum.php in Rocomotion P forum before 1.28 allows remote attackers to read arbitrary files via directory traversal sequences in unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rocomotion:p_forum:*:*:*:*:*:*:*:*
cpe:2.3:a:rocomotion:p_forum:1.00:*:*:*:*:*:*:*

History

21 Nov 2024, 01:09

Type Values Removed Values Added
References () http://another.rocomotion.jp/12568911093444.html - Patch, Vendor Advisory () http://another.rocomotion.jp/12568911093444.html - Patch, Vendor Advisory
References () http://another.rocomotion.jp/12604561773482.html - Patch, Vendor Advisory () http://another.rocomotion.jp/12604561773482.html - Patch, Vendor Advisory
References () http://jvn.jp/en/jp/JVN00152874/index.html - () http://jvn.jp/en/jp/JVN00152874/index.html -
References () http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000084.html - () http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000084.html -
References () http://secunia.com/advisories/37691 - Vendor Advisory () http://secunia.com/advisories/37691 - Vendor Advisory

Information

Published : 2009-12-22 23:30

Updated : 2024-11-21 01:09


NVD link : CVE-2009-4383

Mitre link : CVE-2009-4383

CVE.ORG link : CVE-2009-4383


JSON object : View

Products Affected

rocomotion

  • p_forum
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')