First published: Thu Jun 21 2007(Updated: )
Directory traversal vulnerability in Satellite.php in Satel Lite for PhpNuke allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the name parameter in a modload action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Php-nuke Satel Lite |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2007-3332 is considered high due to its potential for remote file access.
To fix CVE-2007-3332, it is recommended to update to the latest version of Satel Lite that includes a patch for this vulnerability.
CVE-2007-3332 affects Satel Lite for PhpNuke across various versions.
CVE-2007-3332 can enable attackers to read arbitrary files on the server, potentially exposing sensitive information.
A possible workaround for CVE-2007-3332 is to configure the server to restrict access to sensitive files until a patch is applied.