9.3
CVSSv2

CVE-2007-5706

Published: 29/10/2007 Updated: 15/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Absolute path traversal vulnerability in download.php in Jeebles Directory 2.9.60 allows remote malicious users to read arbitrary files via a full pathname in the query string. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

jeeblestechnology jeebles directory 2.9.60

Exploits

source: wwwsecurityfocuscom/bid/26171/info Jeebles Directory is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input Exploiting this issue may allow an unauthorized user to execute local scripts or to view arbitrary files that may contain sensitive information that can aid in further atta ...