Unrated severityNVD Advisory· Published Sep 26, 2007· Updated Jun 16, 2026
CVE-2007-5103
CVE-2007-5103
Description
Directory traversal vulnerability in config.inc.php in Wordsmith 1.0 RC1, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the _path parameter.
Affected products
2Patches
Vulnerability mechanics
References
3- secunia.com/advisories/26924nvdVendor Advisory
- osvdb.org/38576nvd
- www.exploit-db.com/exploits/4446nvd
News mentions
0No linked articles in our index yet.