Directory traversal vulnerability in quiz.cgi for Mike Spice Quiz Me! before 0.6 allows remote attackers to write arbitrary files via .. (dot dot) sequences in the quiz parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Quiz_me |
Mike_spice |
0.5 (including) |
0.5 (including) |
References