Directory traversal vulnerability in html_web_store.cgi and web_store.cgi CGI programs in eXtropia WebStore allows remote malicious users to read arbitrary files via a .. (dot dot) attack on the page parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
extropia extropia webstore 1.0 |
||
extropia extropia webstore 2.0 |