CVE-2008-3363
Dokeos E-Learning System <1.8.5 - Path Traversal
Title source: llmDescription
Directory traversal vulnerability in user_portal.php in the Dokeos E-Learning System 1.8.5 on Windows allows remote attackers to include and execute arbitrary local files via a ..\ (dot dot backslash) in the include parameter.
Exploits (1)
References (8)
Scores
EPSS
0.0783
EPSS Percentile
91.8%
Classification
CWE
CWE-22
Status
draft
Affected Products (1)
dokeos/e-learning_system
Timeline
Published
Jul 30, 2008
Tracked Since
Feb 18, 2026