SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2008-0452

Directory traversal vulnerability in articles.php in Siteman 1.1.9 allows remote attackers to read arbitrary files via directory traversal sequences in the cat parameter in a viewart action.

MEDIUM 5.0EPSS 2.81%

Does this matter?

Lower severity and a low EPSS score (2.81%). Track it; it rarely justifies an emergency change on its own.

Description

Directory traversal vulnerability in articles.php in Siteman 1.1.9 allows remote attackers to read arbitrary files via directory traversal sequences in the cat parameter in a viewart action.

CVSS 2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
2.81% probability · 86th percentile
CISA KEV
Not listed
Weakness
CWE-22
Affected
siteman/siteman
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.