CVE

Id
14713  
CVE No.
CVE-2005-3507  
Status
Candidate  
Description
Directory traversal vulnerability in CuteNews 1.4.1 allows remote attackers to include arbitrary files, execute code, and gain privileges via "../" sequences in the template parameter to (1) show_archives.php and (2) show_news.php.  
Phase
Assigned (20051106)  
Votes
None (candidate not yet proposed)  
Comments