Security Advisory

CVE-2005-4074

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-12-08 01:00:00
Last updated 2024-08-07 23:31:49
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Directory traversal vulnerability in index.cfm in CF_Nuke 4.6 and earlier, when Sandbox Security is disabled, allows remote attackers to include arbitrary local .cfm files via a .. (dot dot) in the (1) sector or (2) page parameters.