VYPR
Unrated severityNVD Advisory· Published Jan 28, 2014· Updated Apr 29, 2026

CVE-2012-5192

CVE-2012-5192

Description

Directory traversal vulnerability in gmap/view_overlay.php in Bitweaver 2.8.1 and earlier allows remote attackers to read arbitrary files via "''%2F" (dot dot encoded slash) sequences in the overlay_type parameter.

Affected products

11
  • Bitweaver/Bitweaver11 versions
    cpe:2.3:a:bitweaver:bitweaver:*:*:*:*:*:*:*:*+ 10 more
    • cpe:2.3:a:bitweaver:bitweaver:*:*:*:*:*:*:*:*range: <=2.8.1
    • cpe:2.3:a:bitweaver:bitweaver:1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:1.1.1_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:1.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:1.3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:2.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:2.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:2.5:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:2.6:*:*:*:*:*:*:*
    • cpe:2.3:a:bitweaver:bitweaver:2.7:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.