← Back

CVE-2008-6265

nvd nist
Published: Feb 24, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Directory traversal vulnerability in portfolio/css.php in Cyberfolio 7.12.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter.

Affected (12)

1 product
Cyberfolio
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
Cyberfolio
Up to 7.12.2
Version 1.0
Version 1.2 rc1
Version 2.0
Version 2.0 rc1
Version 2.0 rc2
Version 2.0 rc3
Version 2.1
Version 2.2
Version 6.0
Version 7.10
Version 7.12

References (8)

Source: cve@mitre.org
Exploit
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.