CVE-2007-3332: Medium severity PHP-Nuke Satel Lite vulnerability
Published Jun 21, 2007
·Updated
Directory traversal vulnerability in Satellite.php in Satel Lite for PhpNuke allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the name parameter in a modload action.
Affected Software
1 affected component
PHP-Nuke Satel Lite
Event History
Jun 21, 2007
CVE Published
07:30 PM
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3332?
The severity of CVE-2007-3332 is considered high due to its potential for remote file access.
2
How do I fix CVE-2007-3332?
To fix CVE-2007-3332, it is recommended to update to the latest version of Satel Lite that includes a patch for this vulnerability.
3
What systems are affected by CVE-2007-3332?
CVE-2007-3332 affects Satel Lite for PhpNuke across various versions.
4
What kind of attacks can CVE-2007-3332 enable?
CVE-2007-3332 can enable attackers to read arbitrary files on the server, potentially exposing sensitive information.
5
Is there a workaround for CVE-2007-3332?
A possible workaround for CVE-2007-3332 is to configure the server to restrict access to sensitive files until a patch is applied.