CVE Vulnerabilities

CVE-2007-0616

Published: Jan 31, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in zen/template-functions.php in zenphoto 1.0.4 up to 1.0.6 allows remote attackers to list arbitrary directories via .. sequences in the album parameter to index.php.

Affected Software

NameVendorStart VersionEnd Version
ZenphotoZenphoto1.0.4 (including)1.0.4 (including)
ZenphotoZenphoto1.0.5 (including)1.0.5 (including)
ZenphotoZenphoto1.0.6 (including)1.0.6 (including)

References