CVE-2008-4718
Last modified
CVE-2008-4718 is a vulnerability of currently unknown severity. Directory traversal vulnerability in help/mini.php in X7 Chat 2.0.1 A1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the help_file parameter, a different vector than CVE-2006-2156.. EPSS estimates a 2.67% chance of exploitation in the next 30 days.
Description
Directory traversal vulnerability in help/mini.php in X7 Chat 2.0.1 A1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the help_file parameter, a different vector than CVE-2006-2156.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| X7 Group | X7 Chat | <= 2.0.1 | Alpha 1 |
| X7 Group | X7 Chat | 1.0.0b | — |
| X7 Group | X7 Chat | 1.1.1b | — |
| X7 Group | X7 Chat | 1.1.2b | — |
| X7 Group | X7 Chat | 1.2.0b | — |
| X7 Group | X7 Chat | 1.3.0b | — |
| X7 Group | X7 Chat | 1.3.1b | — |
| X7 Group | X7 Chat | 1.3.2b | — |
| X7 Group | X7 Chat | 1.3.3b | — |
| X7 Group | X7 Chat | 1.3.4b | — |
| X7 Group | X7 Chat | 1.3.5b | — |
| X7 Group | X7 Chat | 1.3.6 | — |
| X7 Group | X7 Chat | 2.0.0 | — |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-4718?
How severe is CVE-2008-4718?
How do I fix CVE-2008-4718?
Are you affected by CVE-2008-4718?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
