← Back

CVE-2008-6843

nvd nist
Published: Jul 2, 2009Modified: Apr 23, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Directory traversal vulnerability in index.php in Fantastico, as used with cPanel 11.x, allows remote attackers to read arbitrary files via a .. (dot dot) in the sup3r parameter.

Affected (20)

1 product
Fantastico De Luxe
1 product
Cpanel
Configuration A
20 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Cpanel
Version 11.16
Version 11.18.1
Version 11.18.2
Version 11.18.3
Version 11.18.4
Version 11.18
Version 11.19.3
Version 11.21
Version 11.21 beta
Version 11.22.1
Version 11.22.2
Version 11.22.3
Version 11.22
Version 11.23.1 current
Version 11.23.1_current
Version 11.4.19
Version 11.8.6 stable
Version 11.8.6_stable
Version 11

References (6)

Source: cve@mitre.org
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.