Back

HIGH

moin: embedded fckeditor multiple directory traversal vulns

Published Jul 5, 2009

Description

Multiple directory traversal vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to create executable files in arbitrary directories via directory traversal sequences in the input to unspecified connector modules, as exploited in the wild for remote code execution in July 2009, related to the file browser and the editor/filemanager/connectors/ directory.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (18)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 5, 2009
Updated Aug 7, 2024
Reserved Jun 29, 2009
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Jul 3, 2009