CVE-2008-3710: Path Traversal
Multiple directory traversal vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) scriptpath parameter to (a) options.php and the (2) langcode parameter to (b) copyvip.php and (c) processeditboard.php in adminopts/. NOTE: some of these vectors might not be vulnerabilities under proper installation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3710?
CVE-2008-3710 has a medium severity rating, indicating it poses a moderate risk to affected systems.
What systems are affected by CVE-2008-3710?
CVE-2008-3710 specifically affects CyBoards PHP Lite version 1.21.
How do I fix CVE-2008-3710?
To mitigate CVE-2008-3710, apply the latest patches to CyBoards PHP Lite or implement validation to prevent directory traversal.
Can CVE-2008-3710 be exploited remotely?
Yes, CVE-2008-3710 allows remote attackers to exploit the vulnerability through crafted input parameters.
What types of attacks are associated with CVE-2008-3710?
CVE-2008-3710 is associated with directory traversal attacks, which may lead to the inclusion and execution of arbitrary local files.