Directory traversal vulnerability in download.html in ARWScripts Gallery Script Lite (aka gallery-script-lite or Free Photo Gallery Site Script), as of 20080411, allows remote attackers to read arbitrary local files via directory traversal sequences in the path parameter.
References
Configurations
Information
Published : 2008-04-11 12:05
Updated : 2017-10-18 18:30
NVD link : CVE-2008-1730
Mitre link : CVE-2008-1730
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
arwscripts
- gallery_script_lite


