THREATOPS
THREAT OPSThreat News › [NVD] CVE-2000-1229 — Directory traversal vulnerability in Phorum 3.0.7 allows remote Phorum administrators to read arbitrary files via ".." (dot dot) sequences in the default .langfile name field in the Master Settings administrative function, which causes the file to be displayed in admin.php3.

[NVD] CVE-2000-1229 — Directory traversal vulnerability in Phorum 3.0.7 allows remote Phorum administrators to read arbitrary files via ".." (dot dot) sequences in the default .langfile name field in the Master Settings administrative function, which causes the file to be displayed in admin.php3.

lownvdPublished 2000-12-31

CVE-2000-1229 CVSS: None Published: 2000-12-31T05:00:00.000

Directory traversal vulnerability in Phorum 3.0.7 allows remote Phorum administrators to read arbitrary files via ".." (dot dot) sequences in the default .langfile name field in the Master Settings administrative function, which causes the file to be displayed in admin.php3.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2000-1229