CVE Vulnerabilities

CVE-2007-0616

Published: Jan 31, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in zen/template-functions.php in zenphoto 1.0.4 up to 1.0.6 allows remote attackers to list arbitrary directories via .. sequences in the album parameter to index.php.

Affected Software

Name Vendor Start Version End Version
Zenphoto Zenphoto 1.0.4 (including) 1.0.4 (including)
Zenphoto Zenphoto 1.0.5 (including) 1.0.5 (including)
Zenphoto Zenphoto 1.0.6 (including) 1.0.6 (including)

References