Directory traversal vulnerability in pafiledb.php in paFileDB 3.1 and earlier allows remote attackers to include arbitrary files via a .. (dot dot) in the action parameter.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-06-14 21:00
Updated : 2016-10-17 20:23
NVD link : CVE-2005-2001
Mitre link : CVE-2005-2001
JSON object : View
CWE
Products Affected
php_arena
- pafiledb