Directory traversal vulnerability in includes/operator_chattranscript.php in Scott Weedon Ajax Chat, possibly 0.1, allows remote attackers to read arbitrary files via a .. (dot dot) in the chatid parameter.
References
Configurations
History
No history.
Information
Published : 2006-08-02 16:04
Updated : 2024-02-28 10:42
NVD link : CVE-2006-3972
Mitre link : CVE-2006-3972
CVE.ORG link : CVE-2006-3972
JSON object : View
Products Affected
scott_weedon
- ajax_chat
CWE