Directory traversal vulnerability in download.php in Interface Medien ibase 2.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2009-02-25T23:00:00
Updated: 2024-08-07T11:27:35.024Z
Reserved: 2009-02-25T00:00:00
Link: CVE-2008-6288

No data.

Status : Modified
Published: 2009-02-25T23:30:00.890
Modified: 2024-11-21T00:56:09.107
Link: CVE-2008-6288

No data.