CVE-2009-0886
MEDIUM
5.0
CVSS Severity Score
Vulnerability Description
Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the default_language parameter.
Affected Platforms (CPE)
📦
Oneorzero
Oneorzero Helpdesk
<= 1.6.5.7📦
Oneorzero
Oneorzero Helpdesk
= 1.4_rc4📦
Oneorzero
Oneorzero Helpdesk
= 1.6📦
Oneorzero
Oneorzero Helpdesk
= 1.6.3📦
Oneorzero
Oneorzero Helpdesk
= 1.6.3.0📦
Oneorzero
Oneorzero Helpdesk
= 1.6.4📦
Oneorzero
Oneorzero Helpdesk
= 1.6.4.1📦
Oneorzero
Oneorzero Helpdesk
= 1.6.4.2📦
Oneorzero
Oneorzero Helpdesk
= 1.6.5.3📦
Oneorzero
