CVE-2008-5968
Publication date 26 January 2009
Last updated 24 July 2024
Ubuntu priority
Description
Directory traversal vulnerability in print.php in PHP iCalendar 2.24 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cookie_language parameter in a phpicalendar_* cookie, a different vector than CVE-2006-1292.