Security Advisory

CVE-2012-6522

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-01-31 02:00:00
Last updated 2024-08-06 21:28:39
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Directory traversal vulnerability in the getContent function in codes/wcms.php in w-CMS 2.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter. NOTE: some of these details are obtained from third party information.