CVE-2011-4813: Path Traversal
Published Dec 14, 2011
·Updated
Directory traversal vulnerability in clientarea.php in WHMCompleteSolution (WHMCS) 3.x.x allows remote attackers to read arbitrary files via an invalid action and a ../ (dot dot slash) in the templatefile parameter.
Affected Software
1 affected component
WHMCS WHMCompleteSolution=3.0.0
Event History
Dec 14, 2011
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4813?
The severity of CVE-2011-4813 is considered critical due to its ability to allow remote attackers to read arbitrary files.
2
How do I fix CVE-2011-4813?
To fix CVE-2011-4813, update your WHMCS software to version 3.0.1 or later.
3
What systems are affected by CVE-2011-4813?
CVE-2011-4813 affects WHMCompleteSolution (WHMCS) version 3.0.0.
4
What type of vulnerability is CVE-2011-4813?
CVE-2011-4813 is classified as a directory traversal vulnerability.
5
Can CVE-2011-4813 lead to data breaches?
Yes, CVE-2011-4813 can lead to data breaches by allowing unauthorized access to sensitive files.