CVE-2008-1755 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 2.7% (pctl 85)
Patch early
A public exploit exists.
Description
Directory traversal vulnerability in the showSource function in showSource.php in World of Phaos 4.0.1 allows remote attackers to read arbitrary files via directory traversal sequences in the file parameter.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
| EPSS | 2.67% — more likely to be exploited than 85% of all CVEs |
| Weakness | CWE-22 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2008-04-11 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| zekewalker | world of phaos |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Phaos R4000 Version - 'file' Remote File Disclosure | 2008-04-09 |
References
- http://www.osvdb.org/44387
- http://www.securityfocus.com/bid/28719
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41741
- https://www.exploit-db.com/exploits/5420
- http://www.osvdb.org/44387
- http://www.securityfocus.com/bid/28719
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41741
- https://www.exploit-db.com/exploits/5420
→ the Explorer · watch your stack · NVD