Directory traversal vulnerability in admin.php in McGallery 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Mcgallery |
Mcgallery |
1.1 (including) |
1.1 (including) |
References