Directory traversal vulnerability in Simple PHP Blog (SPHPBlog) 0.3.7c allows remote attackers to read or create arbitrary files via a .. (dot dot) in the entry parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Simple_php_blog | Alexander_palmo | 0.3.7c (including) | 0.3.7c (including) |