vendor:
Pollen CMS
by:
MizoZ
7,5
CVSS
HIGH
Local File Disclosure
22
CWE
Product Name: Pollen CMS
Affected Version From: 0.6
Affected Version To: 0.6
Patch Exists: YES
Related CWE: N/A
CPE: a:pollencms:pollencms:0.6
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Ubuntu Desktop 12.04
2013
Pollen CMS <= 0.6 - Local File Disclosure
The script readimage.php in Pollen CMS 0.6 does not properly validate the existence of the given file, allowing an attacker to read any file on the server. An attacker can exploit this vulnerability by sending a crafted HTTP request to the vulnerable server, containing the path to the file to be read.
Mitigation:
Upgrade to a version of Pollen CMS that is not affected by this vulnerability.