CVE-2007-5454

Directory traversal vulnerability in index.php in PHP File Sharing System 1.5.1 allows remote attackers to list or create arbitrary directories, or delete arbitrary files, as demonstrated by listing directories via a .. (dot dot) in the cam parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:php_file_sharing_system:php_file_sharing_system:1.5.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:37

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/fulldisclosure/2007-10/0343.html - Exploit () http://archives.neohapsis.com/archives/fulldisclosure/2007-10/0343.html - Exploit
References () http://secunia.com/advisories/27257 - () http://secunia.com/advisories/27257 -
References () http://www.securityfocus.com/bid/26065 - () http://www.securityfocus.com/bid/26065 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/37193 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/37193 -

Information

Published : 2007-10-14 18:17

Updated : 2024-11-21 00:37


NVD link : CVE-2007-5454

Mitre link : CVE-2007-5454

CVE.ORG link : CVE-2007-5454


JSON object : View

Products Affected

php_file_sharing_system

  • php_file_sharing_system
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')