CVE-2008-6668
65Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 15%
from disclosure to weapon
Published on NVDApr 8
VulnCheck+5643d
exploitation probability
15%top 3% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
Multiple directory traversal vulnerabilities in nweb2fax 0.2.7 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) id parameter to comm.php and (2) var_filename parameter to viewrq.php.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/5856⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.