VYPR

AR Web Content Manager

by AR

CVEs (2)

  • CVE-2011-0903Feb 7, 2011
    risk 0.03cvss epss 0.02

    Multiple directory traversal vulnerabilities in AR Web Content Manager (AWCM) 2.2 allow remote attackers to read arbitrary files and possibly have other unspecified impact via a .. (dot dot) in the (1) awcm_theme or (2) awcm_lang cookie to (a) index.php or (b) header.php.

  • CVE-2009-3219Sep 16, 2009
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in a.php in AR Web Content Manager (AWCM) 2.1, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the a parameter.