CVE-2005-4095

Docebolms - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in connector.php in the fckeditor2rc2 addon in DoceboLMS 2.0.4 allows remote attackers to list arbitrary files and directories via ".." sequences in the Type parameter in a GetFoldersAndFiles command.

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · phpwebappsphp
https://www.exploit-db.com/exploits/1356

Scores

EPSS 0.1126
EPSS Percentile 93.5%

Details

Status published
Products (1)
docebolms/docebolms 2.0.4
Published Dec 08, 2005
Tracked Since Feb 18, 2026