Directory traversal vulnerability in downloadpic.php in Beryo 2.0, and possibly other versions including 2.4, allows remote attackers to read arbitrary files via a .. (dot dot) in the chemin parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Beryo | Gna | 2.0 (including) | 2.0 (including) |
Beryo | Gna | 2.4 (including) | 2.4 (including) |