| CVE-ID |
CVE-2009-2265
(under review)
|
• Severity Rating • Fix Information • Vulnerable Software Versions • SCAP Mappings
|
| Description |
| Multiple directory traversal vulnerabilities in FCKeditor before
2.6.4.1 allow remote attackers to create executable files in arbitrary
directories via directory traversal sequences in the input to
unspecified connector modules, as exploited in the wild for remote
code execution in July 2009, related to the file browser and the
editor/filemanager/connectors/ directory.
|
| References |
|
Note: References are provided for the convenience of the reader to help distinguish between vulnerabilities. The list is not intended to be complete.
|
|
|
| Status |
| Candidate |
This CVE Identifier has "Candidate" status and must be reviewed and accepted by the CVE Editorial Board before it can be updated to official "Entry" status on the CVE List. It may be modified or even rejected in the future. |
| Phase |
| Assigned (20090629) |
| Votes |
|
| Comments |
|
| Candidate assigned on 20090629 and proposed on N/A |
|
|
|
For More Information: cve@mitre.org
|