Vulnerability Details CVE-2009-3515
Directory traversal vulnerability in dnet_admin/index.php in d.net CMS allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the type parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.7%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2009-3515
-
cpe:2.3:a:marcin_manek:d.net_cms:*