Directory traversal vulnerability in download/index.php, and possibly download.php, in threesquared.net (aka Ben Speakman) Php download allows remote attackers to overwrite arbitrary local files via .. (dot dot) sequence in the file parameter.
References
Configurations
Information
Published : 2006-09-08 17:04
Updated : 2018-10-17 14:38
NVD link : CVE-2006-4651
Mitre link : CVE-2006-4651
JSON object : View
CWE
Products Affected
threesquared.net
- php_download_script


