Описание
Directory traversal vulnerability in zen/template-functions.php in zenphoto 1.0.4 up to 1.0.6 allows remote attackers to list arbitrary directories via ".." sequences in the album parameter to index.php.
Directory traversal vulnerability in zen/template-functions.php in zenphoto 1.0.4 up to 1.0.6 allows remote attackers to list arbitrary directories via ".." sequences in the album parameter to index.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-0616
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32102
- http://osvdb.org/33072
- http://secunia.com/advisories/24026
- http://www.securityfocus.com/bid/22368
- http://www.vupen.com/english/advisories/2007/0470
- http://www.zenphoto.org/support/topic.php?id=1146&replies=3
- http://www.zenphoto.org/support/topic.php?id=1148
EPSS
Процентиль: 65%
0.00491
Низкий
CVE ID
Связанные уязвимости
nvd
около 19 лет назад
Directory traversal vulnerability in zen/template-functions.php in zenphoto 1.0.4 up to 1.0.6 allows remote attackers to list arbitrary directories via ".." sequences in the album parameter to index.php.
EPSS
Процентиль: 65%
0.00491
Низкий