CVE-2011-4450
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 7.5%
from disclosure to weapon0 days
Published on NVDSep 5
1st PoCNov 30
exploitation probability
7.5%top 6% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Directory traversal vulnerability in handlers/files.xml/files.xml.php in WikkaWiki 1.3.1 and 1.3.2 allows remote attackers to read or delete arbitrary files via a non-initial .. (dot dot) in the file parameter, as demonstrated by the /../../wikka.config.php pathname in a download action.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/18177unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.