CVE-2007-3312

Efstratios Geroulis Jasmine Cms - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in admin/plugin_manager.php in Jasmine CMS 1.0 allows remote authenticated administrators to include and execute arbitrary local files a .. (dot dot) in the u parameter. NOTE: a separate vulnerability could be leveraged to make this issue exploitable by remote unauthenticated attackers.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Silentz · phpwebappsphp
https://www.exploit-db.com/exploits/4081

Scores

EPSS 0.0414
EPSS Percentile 88.7%

Details

Status published
Products (1)
efstratios_geroulis/jasmine_cms 1.0
Published Jun 21, 2007
Tracked Since Feb 18, 2026