CVE-2008-2459

Entertainmentscript - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in page.php in EntertainmentScript 1.4.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the page parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Stack · perlwebappsphp
https://www.exploit-db.com/exploits/5655

Scores

EPSS 0.0383
EPSS Percentile 88.2%

Details

CWE
CWE-22
Status published
Products (1)
entertainmentscript/entertainmentscript 1.4.0
Published May 27, 2008
Tracked Since Feb 18, 2026