Security Advisory

CVE-2007-0329

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-01-18 02:00:00
Last updated 2024-08-07 12:12:18
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

download.php in Joonas Viljanen JV2 Folder Gallery allows remote attackers to read sensitive files via a relative pathname in the file parameter, as demonstrated by config/gallerysetup.php. NOTE: this issue might be resultant from a directory traversal vulnerability.