Directory traversal vulnerability in index.php in 4Images 1.7.1 and previous versions allows remote malicious users to read and include arbitrary files via ".." (dot dot) sequences in the template parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
4images image gallery management system |