Directory traversal vulnerability in dwnld.php in GuppY 4.5.11 allows remote malicious users to overwrite arbitrary files via a "%2E." (mixed encoding) in the pg parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
guppy guppy 2.4 |
||
guppy guppy 4.5.3 |
||
guppy guppy 4.5.3a |
||
guppy guppy 2.4_p4 |
||
guppy guppy 4.5 |
||
guppy guppy 2.4_p1 |
||
guppy guppy 2.4_p3 |
||
guppy guppy 4.5.4 |
||
guppy guppy 4.5.9 |
||
guppy guppy 4.5.10 |
||
guppy guppy 4.5.11 |