Directory traversal vulnerability in mod.php in Arab Portal 2.1 on Windows allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter, in conjunction with a show action.
2008-12-31T11:30:00.313
2025-04-09T00:30:58.490
Deferred
CVSSv2: 5.4 (MEDIUM)
AV:N/AC:H/Au:N/C:C/I:N/A:N
4.9
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | arabportal | arab_portal | 2.1 | Yes |
Operating System | microsoft | windows | * | No |