CVE-2008-0459
Liquidsilvercms - Path Traversal
Title source: ruleDescription
Directory traversal vulnerability in update/index.php in Liquid-Silver CMS 0.35, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the update parameter.
Exploits (1)
References (5)
Scores
EPSS
0.0446
EPSS Percentile
88.9%
Classification
CWE
CWE-22
Status
draft
Affected Products (2)
liquidsilvercms/liquidsilvercms
liquidsilvercms/liquidsilvercms
Timeline
Published
Jan 25, 2008
Tracked Since
Feb 18, 2026