Unrated severityNVD Advisory· Published Feb 24, 2012· Updated Jun 16, 2026
CVE-2012-0998
CVE-2012-0998
Description
Directory traversal vulnerability in account/preferences.php in LEPTON before 1.1.4 allows remote attackers to include and execute arbitrary files via a .. (dot dot) in the language parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:lepton-cms:lepton:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:lepton-cms:lepton:*:*:*:*:*:*:*:*range: <=1.1.3
- cpe:2.3:a:lepton-cms:lepton:1.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:lepton-cms:lepton:1.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:lepton-cms:lepton:1.1.2:*:*:*:*:*:*:*
- (no CPE)range: <1.1.4
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.