Directory traversal vulnerability in admin.php in toendaCMS before 0.6.2 allows remote attackers to access arbitrary files via a .. (dot dot) in the id_user parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Toendacms | Toenda_software_development | * | 0.6.1 (including) |