CVE-2008-2813: Path Traversal
Published Jun 23, 2008
·Updated
Directory traversal vulnerability in index.php in WallCity-Server Shoutcast Admin Panel 2.0, when magicquotesgpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.
Affected Software
1 affected component
Shoutcastadmin Wallcity-server Shoutcast Admin Panel=2.0
Event History
Jun 23, 2008
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2813?
CVE-2008-2813 is considered to be of high severity due to its potential for remote code execution.
2
How do I fix CVE-2008-2813?
To fix CVE-2008-2813, ensure that magic_quotes_gpc is enabled or upgrade to a secure version of WallCity-Server Shoutcast Admin Panel.
3
What systems are affected by CVE-2008-2813?
CVE-2008-2813 specifically affects WallCity-Server Shoutcast Admin Panel version 2.0.
4
What type of attack does CVE-2008-2813 allow?
CVE-2008-2813 allows attackers to execute arbitrary local files via directory traversal.
5
Can CVE-2008-2813 be exploited remotely?
Yes, CVE-2008-2813 can be exploited remotely by attackers with knowledge of the vulnerability.