CVE-2010-1948: Path Traversal
Directory traversal vulnerability in scr/soustab.php in openMairie Openfoncier 2.00, when registerglobals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the dsn[phptype] parameter, a related issue to CVE-2007-2069.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1948?
The severity of CVE-2010-1948 is medium with a score of 6.8.
What does CVE-2010-1948 exploit?
CVE-2010-1948 is a directory traversal vulnerability that allows remote attackers to include and execute arbitrary local files.
What software is affected by CVE-2010-1948?
CVE-2010-1948 affects openMairie Openfoncier version 2.00 when register_globals is enabled.
How do I fix CVE-2010-1948?
Fix CVE-2010-1948 by disabling register_globals in your PHP configuration and updating to a patched version of the software.
What is the impact of CVE-2010-1948?
The impact of CVE-2010-1948 includes potential unauthorized access to sensitive information and the ability to execute arbitrary code.