RSS   Vulnerabilities for 'Web file browser'   RSS

2011-12-14
 
CVE-2011-4831

CWE-22
 

 
Directory traversal vulnerability in webFileBrowser.php in Web File Browser 0.4b14 allows remote authenticated users to read arbitrary files via a ..%2f (encoded dot dot) in the file parameter in a download action.

 


Copyright 2024, cxsecurity.com

 

Back to Top