CVE-2008-6590
Lightneasy - Path Traversal
Title source: ruleDescription
Multiple directory traversal vulnerabilities in LightNEasy "no database" (aka flat) version 1.2.2, and possibly SQLite version 1.2.2, allow remote attackers to read arbitrary files via a .. (dot dot) in the page parameter to (1) index.php and (2) LightNEasy.php.
Exploits (1)
References (6)
Scores
EPSS
0.0297
EPSS Percentile
86.5%
Details
CWE
CWE-22
Status
published
Products (2)
lightneasy/lightneasy
1.2.2
sqlite/sqlite
1.2.2
Published
Apr 03, 2009
Tracked Since
Feb 18, 2026