Directory traversal vulnerability in themes/program/themesettings.inc.php in Segue CMS 1.5.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter.
References
Configurations
Information
Published : 2006-10-25 10:07
Updated : 2017-07-20 01:33
NVD link : CVE-2006-5498
Mitre link : CVE-2006-5498
JSON object : View
Products Affected
middlebury_college
- segue_cms
CWE
