CyberSec.Space Logo
返回 CVE 浏览器

CVE-2009-0886

MEDIUM
5.0
CVSS Severity Score
EPSS Score0.0170%
EPSS Percentile27.05th
Published2009年3月12日
Last Modified2026年4月23日

Vulnerability Description

Directory traversal vulnerability in login.php in OneOrZero Helpdesk 1.6.5.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the default_language parameter.

Affected Platforms (CPE)

📦
Oneorzero

Oneorzero Helpdesk

<= 1.6.5.7
📦
Oneorzero

Oneorzero Helpdesk

= 1.4_rc4
📦
Oneorzero

Oneorzero Helpdesk

= 1.6
📦
Oneorzero

Oneorzero Helpdesk

= 1.6.3
📦
Oneorzero

Oneorzero Helpdesk

= 1.6.3.0
📦
Oneorzero

Oneorzero Helpdesk

= 1.6.4
📦
Oneorzero

Oneorzero Helpdesk

= 1.6.4.1
📦
Oneorzero

Oneorzero Helpdesk

= 1.6.4.2
📦
Oneorzero

Oneorzero Helpdesk

= 1.6.5.3
📦
Oneorzero

Oneorzero Helpdesk

= 1.6.5.4

References & Advisories

相关漏洞威胁