Vulnerability Details CVE-2008-5993
Directory traversal vulnerability in image.php in Barcode Generator 1D (barcodegen) 2.0.0 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the code parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.8%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2008-5993
-
cpe:2.3:a:barcodephp:barcodegen_1d:*
-
cpe:2.3:a:barcodephp:barcodegen_1d:1.2.4
-
cpe:2.3:a:barcodephp:barcodegen_1d:1.3.0