CVE-2008-3589
MoziloCMS 1.10.1 - Path Traversal
Title source: llmDescription
Directory traversal vulnerability in download.php in moziloCMS 1.10.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the cat parameter.
Exploits (1)
References (5)
Scores
EPSS
0.0451
EPSS Percentile
89.2%
Details
CWE
CWE-22
Status
published
Products (1)
mozilo/mozilocms
1.10.1
Published
Aug 11, 2008
Tracked Since
Feb 18, 2026