CVE-2008-6407

Brian Wilson Ol'bookmarks - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the framefile parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by GoLd_M · textwebappsphp
https://www.exploit-db.com/exploits/6547

Scores

EPSS 0.0259
EPSS Percentile 85.3%

Classification

CWE
CWE-22
Status draft

Affected Products (1)

brian_wilson/ol\'bookmarks

Timeline

Published Mar 06, 2009
Tracked Since Feb 18, 2026