Directory traversal vulnerability in themes/program/themesettings.inc.php in Segue CMS 1.5.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter.
References
Configurations
Information
Published : 2006-10-25 03:07
Updated : 2017-07-19 18:33
NVD link : CVE-2006-5498
Mitre link : CVE-2006-5498
JSON object : View
CWE
Products Affected
middlebury_college
- segue_cms