Directory traversal vulnerability in ShowImage.php in SiteDepth CMS 3.44 allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Sitedepth_cms |
Sitedepth |
3.44 (including) |
3.44 (including) |
References