7.8
CVSSv2

CVE-2007-0616

Published: 31/01/2007 Updated: 29/07/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in zen/template-functions.php in zenphoto 1.0.4 up to 1.0.6 allows remote malicious users to list arbitrary directories via ".." sequences in the album parameter to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

zenphoto zenphoto 1.0.6

zenphoto zenphoto 1.0.4

zenphoto zenphoto 1.0.5