PHP.mod.php.MOD.Parameter.Directory.Traversal

description-logoDescription

It indicates a possible exploit of a directory traversal vulnerability in eNdonesia.
This vulnerability is due to input validation errors in "mod.php" when processing user-supplied parameters, which could be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser in the security context of an affected Web site.

affected-products-logoAffected Products

eNdonesia version 8.4 and prior.

Impact logoImpact

Directory transversal.

recomended-action-logoRecommended Actions

eNdonesia Homepage:
http://sourceforge.net/projects/endonesia

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-04-09 14.589 Default_action:pass:drop