Directory traversal vulnerability in YaBB search.pl CGI script allows remote malicious users to read arbitrary files via a .. (dot dot) attack in the "catsearch" form field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
yabb yabb 2000-09-11 |