VYPR
Unrated severityNVD Advisory· Published Jan 9, 2008· Updated Jun 16, 2026

CVE-2008-0156

CVE-2008-0156

Description

Absolute path traversal vulnerability in index.php in Million Dollar Script 2.0.14 allows remote attackers to read arbitrary files via encoded "/" (%2F) sequences in the link parameter.

Affected products

2
  • cpe:2.3:a:million_dollar_script:million_dollar_script:2.0.14:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:million_dollar_script:million_dollar_script:2.0.14:*:*:*:*:*:*:*
    • (no CPE)range: =2.0.14

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.