Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path parameter, a different vector than CVE-2006-6328.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Torrentflux | Torrentflux | * | 2.2 (including) |
Torrentflux-b4rt | Torrentflux | * | 2.1_b4rt971 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt3 (including) | 2.1_b4rt3 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt4 (including) | 2.1_b4rt4 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt5 (including) | 2.1_b4rt5 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt6 (including) | 2.1_b4rt6 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt7 (including) | 2.1_b4rt7 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt8 (including) | 2.1_b4rt8 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt9 (including) | 2.1_b4rt9 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt61 (including) | 2.1_b4rt61 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt81 (including) | 2.1_b4rt81 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt82 (including) | 2.1_b4rt82 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt83 (including) | 2.1_b4rt83 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt84 (including) | 2.1_b4rt84 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt85 (including) | 2.1_b4rt85 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt91 (including) | 2.1_b4rt91 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt92 (including) | 2.1_b4rt92 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt93 (including) | 2.1_b4rt93 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt94 (including) | 2.1_b4rt94 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt95 (including) | 2.1_b4rt95 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt96 (including) | 2.1_b4rt96 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt97 (including) | 2.1_b4rt97 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt801 (including) | 2.1_b4rt801 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt802 (including) | 2.1_b4rt802 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt951 (including) | 2.1_b4rt951 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt952 (including) | 2.1_b4rt952 (including) |
Torrentflux-b4rt | Torrentflux | 2.1_b4rt953 (including) | 2.1_b4rt953 (including) |
Torrentflux | Ubuntu | devel | * |
Torrentflux | Ubuntu | edgy | * |
Torrentflux | Ubuntu | feisty | * |
Torrentflux | Ubuntu | gutsy | * |