Directory traversal vulnerability in pafiledb.php in paFileDB 3.1 and previous versions allows remote malicious users to include arbitrary files via a .. (dot dot) in the action parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
php arena pafiledb 1.1.3 |
||
php arena pafiledb 3.0_beta_3.1 |
||
php arena pafiledb 3.1 |
||
php arena pafiledb 2.1.1 |
||
php arena pafiledb 3.0 |