5
CVSSv2

CVE-2007-6215

Published: 04/12/2007 Updated: 29/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Multiple directory traversal vulnerabilities in play.php in Web-MeetMe 3.0.3 allow remote malicious users to read arbitrary files via a .. (dot dot) in the (1) roomNo and possibly the (2) bookid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

web-meetme web-meetme 3.0.3

Exploits

/--------------------------------------------------------------------------\ |Web-MeetMe 303 (playphp) Remote File Disclosure Vulnerability | |Download Script : | | sourceforgenet/project/showfilesphp?group_id=164788 | |POC : ...