Directory traversal vulnerability in passwiki.php in PassWiki 0.9.16 RC3 and previous versions allows remote malicious users to read arbitrary local files via a .. (dot dot) in the site_id parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
i-apps passwiki 0.9.16 |
||
i-apps passwiki 0.9.14 |
||
i-apps passwiki 0.9.13 |
||
i-apps passwiki 0.9.6 |
||
i-apps passwiki 0.9.5 |
||
i-apps passwiki 0.9.15 |
||
i-apps passwiki 0.9.10 |
||
i-apps passwiki 0.9.9 |
||
i-apps passwiki 0.9.12 |
||
i-apps passwiki 0.9.11 |
||
i-apps passwiki 0.9.3 |
||
i-apps passwiki |
||
i-apps passwiki 0.9.8 |
||
i-apps passwiki 0.9.7 |