Contributed by CVE Reference:
Critical Directory Traversal Directory traversal vulnerability in error.php in PostNuke 0.763 and earlier allows remote attackers to include and execute arbitrary local files under certain circumstances via the PNSVlang session variable which is included by error.php. Kacper Users should immediately update to 0.764. PostNuke versions 0.764 and later are unaffected. see Release Announcement. Andreas Krapohl [larsneo]Severity
Impact
Vulnerabilities
Credits
Solution
PostNuke 0.764 Downloads
PostNuke CMS Development