Directory traversal vulnerability in function/sources.php in SLAED CMS 2.5 Lite allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the newlang parameter to index.php.
                
            References
                    Configurations
                    History
                    No history.
Information
                Published : 2008-01-25 16:00
Updated : 2025-04-09 00:30
NVD link : CVE-2008-0458
Mitre link : CVE-2008-0458
CVE.ORG link : CVE-2008-0458
JSON object : View
Products Affected
                slaed
- slaed_cms
 
CWE
                
                    
                        
                        CWE-22
                        
            Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
