CVE

Id
34829  
CVE No.
CVE-2008-4712  
Status
Candidate  
Description
Directory traversal vulnerability in pages/showblog.php in LnBlog 0.9.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the plugin parameter.  
Phase
Assigned (20081023)  
Votes
None (candidate not yet proposed)  
Comments