CVE-2009-5093: Path Traversal
Published Sep 9, 2011
·Updated
Directory traversal vulnerability in gastbuch.php in Gästebuch (Gastebuch) 1.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the start parameter.
Affected Software
1 affected component
Php4scripte Gastebuch=1.6
Event History
Sep 9, 2011
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-5093?
CVE-2009-5093 has a moderate severity rating due to its ability to allow unauthorized access to sensitive files.
2
How do I fix CVE-2009-5093?
To fix CVE-2009-5093, you should patch the Gastebuch application to version 1.6 or later or implement input validation to sanitize the start parameter.
3
What type of vulnerability is CVE-2009-5093?
CVE-2009-5093 is a directory traversal vulnerability that allows attackers to read arbitrary files from the server.
4
Which software versions are affected by CVE-2009-5093?
CVE-2009-5093 specifically affects Gastebuch version 1.6.
5
Can CVE-2009-5093 lead to data breaches?
Yes, if exploited, CVE-2009-5093 can lead to data breaches by exposing sensitive file contents to unauthorized users.