Unrated severityNVD Advisory· Published Jun 23, 2008· Updated Apr 23, 2026
CVE-2008-2820
CVE-2008-2820
Description
Directory traversal vulnerability in lang/lang-system.php in Open Azimyt CMS 0.22 minimal and 0.21 stable allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter.
Affected products
2cpe:2.3:a:azimyt:open_azimyt_cms:0.21_stable:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:azimyt:open_azimyt_cms:0.21_stable:*:*:*:*:*:*:*
- cpe:2.3:a:azimyt:open_azimyt_cms:0.22_minimal:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.securityfocus.com/bid/29756nvdExploitPatch
- open-azimyt-cms.googlecode.com/files/security_patch.zipnvd
- secunia.com/advisories/30691nvd
- securityreason.com/securityalert/3955nvd
- www.securityfocus.com/archive/1/493377/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/43102nvd
- www.exploit-db.com/exploits/5831nvd
News mentions
0No linked articles in our index yet.