CVE-2009-0371

SiteXS CMS <0.1.1 - Path Traversal

Title source: llm

Description

Directory traversal vulnerability in post.php in SiteXS CMS 0.1.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the type parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by darkjoker · perlwebappsphp
https://www.exploit-db.com/exploits/7879

Scores

EPSS 0.0330
EPSS Percentile 87.3%

Details

CWE
CWE-22
Status published
Products (2)
sitexs_cms/sitexs_cms 0.1 pre-alpha
sitexs_cms/sitexs_cms < 0.1.1
Published Jan 30, 2009
Tracked Since Feb 18, 2026