pixlie.php in Pixlie 1.7 allows remote malicious users to trigger the reading and JPEG image processing of files in a remote directory tree via a URL in the root parameter. NOTE: this can be leveraged for traffic amplification or other denial of service.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
pixlie pixlie 1.7 |