CVE Vulnerabilities

CVE-2005-4467

Published: Dec 22, 2005 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in help_text_vars.php in PHPGedView 3.3.7 and earlier allows remote attackers to read and include arbitrary files via a .. (dot dot) in the PGV_BASE_DIRECTORY parameter.

Affected Software

Name Vendor Start Version End Version
Phpgedview Phpgedview 2.52.3 (including) 2.52.3 (including)
Phpgedview Phpgedview 2.60 (including) 2.60 (including)
Phpgedview Phpgedview 2.61 (including) 2.61 (including)
Phpgedview Phpgedview 2.61.1 (including) 2.61.1 (including)
Phpgedview Phpgedview 2.65 (including) 2.65 (including)
Phpgedview Phpgedview 2.65.1 (including) 2.65.1 (including)
Phpgedview Phpgedview 2.65.2 (including) 2.65.2 (including)
Phpgedview Phpgedview 2.65_beta5 (including) 2.65_beta5 (including)
Phpgedview Phpgedview 3.3.7 (including) 3.3.7 (including)

References