CVE Database · CVE-2009-1318
CVSS v3.1
N/A
EPSS
1.95%
Published
Apr 17, 2009
Modified
Apr 22, 2026
Public PoC / Exploit (2)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Directory traversal vulnerability in index.php in Jamroom 3.1.2, 3.2.3 through 3.2.6, 4.0.2, and possibly other versions before 3.4.0 allows remote attackers to include arbitrary files via directory traversal sequences in the t parameter.
Weaknesses (CWE)
Affected Products (89)
References (8)
...and 39 more