Directory traversal vulnerability in iconspopup.php in Exponent CMS 0.96.6 Alpha and previous versions allows remote malicious users to obtain sensitive information via a .. (dot dot) in the icodir parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
exponent exponent cms 0.96.5_rc1 |
||
exponent exponent cms 0.96.6_alpha |