CVE-2008-6167

Miniportail - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in search.php in miniPortail 2.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lng parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by StAkeR · textwebappsphp
https://www.exploit-db.com/exploits/6821

Scores

EPSS 0.0259
EPSS Percentile 85.3%

Classification

CWE
CWE-22
Status draft

Affected Products (4)

miniportail/miniportail
miniportail/miniportail
miniportail/miniportail
miniportail/miniportail

Timeline

Published Feb 19, 2009
Tracked Since Feb 18, 2026