cpe:/a:jaxultrabb:jaxultrabb:2.0 CVE-2008-2966 2008-07-02T13:14:00.000-04:00 2017-09-28T21:31:26.850-04:00 7.5 NETWORK LOW NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2008-07-03T07:13:00.000-04:00 ALLOWS_OTHER_ACCESS BID 29853 EXPLOIT-DB 5877 XF jaxultrabb-viewprofile-file-include(43278) Directory traversal vulnerability in viewprofile.php in JaxUltraBB 2.0 and earlier allows remote attackers to read arbitrary local files via a .. (dot dot) in the user parameter. party information.