First published: Wed Dec 31 2003(Updated: )
Absolute path traversal vulnerability in nukestyles.com viewpage.php addon for PHP-Nuke allows remote attackers to read arbitrary files via a full pathname in the file parameter. NOTE: This was originally reported as an issue in PHP-Nuke 6.5, but this is an independent addon.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nukestyles Viewpage | ||
Phpnuke Nukestyles Viewpage Module |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-1545 is classified as a high severity vulnerability due to its ability to allow remote attackers access to sensitive files.
To fix CVE-2003-1545, ensure that the viewpage.php addon is updated to a version that mitigates the absolute path traversal vulnerability.
CVE-2003-1545 affects the nukestyles.com viewpage.php addon used in PHP-Nuke installations.
Yes, CVE-2003-1545 can lead to data leaks as attackers can access arbitrary files on the server.
Any users of the nukestyles.com viewpage.php addon within PHP-Nuke systems are impacted by CVE-2003-1545.