Vulnerabilities (CVE)

Filtered by vendor Curtis Farnham Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-0567 1 Curtis Farnham 1 Files Xaraya Module 2024-02-28 5.0 MEDIUM N/A
Directory traversal vulnerability in Files Xaraya module before 0.5.1, when the Archive Directory field on the Modify Config page is blank, allows remote attackers to access files outside of the web root via ".." (dot dot) sequences.