CVE-2010-0287: Path Traversal
Directory traversal vulnerability in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25b allows remote attackers to list the contents of arbitrary directories via a .. (dot dot) in the ns parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0287?
CVE-2010-0287 has a severity score classified as medium risk due to its potential for directory traversal attacks.
How do I fix CVE-2010-0287?
To fix CVE-2010-0287, update DokuWiki to a version released after 2009-12-25b where the vulnerability has been patched.
Which versions of DokuWiki are affected by CVE-2010-0287?
CVE-2010-0287 affects DokuWiki versions before release 2009-12-25b, including earlier versions such as 2006-03-05 and 2005-09-19.
What types of attacks can exploit CVE-2010-0287?
CVE-2010-0287 can be exploited by remote attackers to perform directory traversal attacks, allowing them to access unauthorized files.
Is CVE-2010-0287 still a risk today?
CVE-2010-0287 is not typically considered a current risk if the software is kept up to date with security patches.