Directory traversal vulnerability in wce.download.php in Comdev eCommerce 3.0 allows remote attackers to download arbitrary files via a .. (dot dot) in the download parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Comdev_ecommerce | Comdev | 3.0 (including) | 3.0 (including) |