CVE-2010-0287
EPSS 10.9%dokuwiki - several vulnerabilities
Published: 2/15/2010Modified: 5/27/2026
Description
Directory traversal vulnerability in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25b allows remote attackers to list the contents of arbitrary directories via a .. (dot dot) in the ns parameter.
Affected packages (2)
- Debian/dokuwikifrom 0, < 0.0.20090214b-3.1
- Debian/dokuwikifrom 0, < 0.0.20080505-4+lenny1