Loading...
Loading...
Multiple directory traversal vulnerabilities in 1024 CMS 1.3.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the lang parameter to pages/print/default/ops/news.php or (2) the theme_dir parameter to pages/download/default/ops/search.php; or the admin_theme_dir parameter to (3) download.php, (4) forum.php, or (5) news.php in admin/ops/reports/ops/. NOTE: it was later reported that 1.4.2 beta and earlier are also affected for vector 1.
December 28, 2007
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-6584
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.