CVE-2008-5997

Omnicom Content Platform (OCP) 2.0 - Path Traversal

Title source: llm
STIX 2.1

Description

Absolute path traversal vulnerability in admin/fileKontrola/browser.asp in Omnicom Content Platform (OCP) 2.0 allows remote attackers to list arbitrary directories via a full pathname in the root parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by AlbaniaN-[H] · textwebappsasp
https://www.exploit-db.com/exploits/32412

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/45394
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/31338

Scores

EPSS 0.0592
EPSS Percentile 90.7%

Details

CWE
CWE-22
Status published
Products (1)
ocp2/omnicom_content_platform 2.0
Published Jan 28, 2009
Tracked Since Feb 18, 2026