CVE-2008-7093

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
26/08/2009
Last modified:
09/04/2025

Description

Multiple directory traversal vulnerabilities in Unica Affinium Campaign 7.2.1.0.55 allow remote attackers to (1) create arbitrary directories or files via a .. (dot dot) in the folder name in the new folder functionality or (2) list arbitrary files via a crafted request to Campaign/CampaignListener.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:unica:affinium_campaign:7.2.1.0.55:*:*:*:*:*:*:*