VendorsExponentexponent_cms0.96.3
Vulnerabilities

Exponent Exponent CMS 0.96.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2006-4963
Directory traversal vulnerability in index.php in Exponent CMS 0.96.3 allows remote attackers to read and execute arbitrary local files via a .. (dot dot) sequence in the view parameter in the show_view action in the calendarmodule module, as demonstrated by executing PHP code through session files.
Published 2006-09-23 · Modified
6.41 PoCEPSS 0.070