Directory traversal vulnerability in main.php in PHPAlbum 0.2.3 and previous versions allows remote malicious users to read arbitrary files via the (1) cmd and (2) var1 parameters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phpalbum.net phpalbum |