vendor:
Testlink
by:
Prashant Khandelwal
7,5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: Testlink
Affected Version From: All versions <= Testlink 1.8.5
Affected Version To: Testlink 1.8.5
Patch Exists: Yes
Related CWE: N/A
CPE: a:testlink:testlink:1.8.5
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2010
Multiple directory Traversal Vulnerabilites in Testlink TestManagement and Execution System.
Multiple directory traversal vulnerabilities has been found in Testlink(http://www.teamst.org/) a popular and acclaimed free, open source Test management tool written in PHP. The issue discovered can only be exploited with an authenticated session. This directory traversal vulnerability is present in the file /testlink/lib/usermanagement/userInfo.php & In testlink 1.8.4 these issues can be exploited by setting the variable "editUser"& "locale" like below with a HTTP POST request.
Mitigation:
Upgrade to the latest version of Testlink.