Directory traversal vulnerability in gallery.php in XeroXer Simple one-file gallery allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Simple_one-file_gallery |
Xeroxer |
* |
0.6 (including) |
References