CVE Vulnerabilities

CVE-2005-1898

Published: Jun 09, 2005 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The passthrough functionality in phpThumb.php in phpThumb() before 1.5.4 allows remote attackers to read files that are not images.

Affected Software

Name Vendor Start Version End Version
Phpthumb Phpthumb 1.5 1.5
Phpthumb Phpthumb 1.5.3 1.5.3
Phpthumb Phpthumb 1.5.1 1.5.1
Phpthumb Phpthumb 1.5.2 1.5.2

References