Directory traversal vulnerability in download.php in Sisfo Kampus 0.8 allows remote attackers to list arbitrary directories via an absolute pathname in the dir parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Sisfo_kampus |
Sisfo_kampus |
0.8 (including) |
0.8 (including) |
References