CVE-2008-1857 EXPLOIT
6.8
MEDIUM · CVSS 2.0 · EPSS 1.9% (pctl 79)
Patch early
A public exploit exists.
Description
Multiple directory traversal vulnerabilities in viewsource.php in Make our Life Easy (Mole) 2.1.0 allow remote attackers to read arbitrary files via directory traversal sequences in the (1) dirn and (2) fname parameters.
Scoring
| CVSS | 6.8 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
| EPSS | 1.92% — more likely to be exploited than 79% of all CVEs |
| Weakness | CWE-22 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2008-04-16 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| mole | make our life easy |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Mole 2.1.0 - 'viewsource.php' Remote File Disclosure | 2008-04-07 |
References
- http://secunia.com/advisories/29685
- http://www.securityfocus.com/bid/28659
- http://www.vupen.com/english/advisories/2008/1141/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41681
- https://www.exploit-db.com/exploits/5394
- http://secunia.com/advisories/29685
- http://www.securityfocus.com/bid/28659
- http://www.vupen.com/english/advisories/2008/1141/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41681
- https://www.exploit-db.com/exploits/5394
→ the Explorer · watch your stack · NVD