CyberSec.Space Logo
Back to CVE Browser

CVE-2009-0886

MEDIUM
5.0
CVSS Severity Score
EPSS Score0.0170%
EPSS Percentile27.05th
PublishedMar 12, 2009
Last ModifiedApr 23, 2026

Vulnerability Description

Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the default_language parameter.

Affected Platforms (CPE)

πŸ“¦
Oneorzero

Oneorzero Helpdesk

<= 1.6.5.7
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.4_rc4
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6.3
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6.3.0
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6.4
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6.4.1
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6.4.2
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6.5.3
πŸ“¦
Oneorzero

Oneorzero Helpdesk

= 1.6.5.4

References & Advisories

Related Vulnerabilities