Security Advisory

CVE-2006-0702

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-02-15 11:00:00
Last updated 2024-08-07 16:41:29
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the lack of details, the specific vulnerability type cannot be determined, although it might be due to directory traversal.