CVE-2004-2256
CVE-2004-2256
Directory traversal vulnerability in phpMyFAQ 1.4.0 alpha allows remote attackers to read arbitrary files, and possibly execute local PHP files, via .. sequences in the lang (language) variable.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://archives.neohapsis.com/archives/fulldisclosure/2004-05/0906.htmlhttp://secunia.com/advisories/11640http://securitytracker.com/id?1010190https://exchange.xforce.ibmcloud.com/vulnerabilities/16223http://www.phpmyfaq.de/advisory_2004-05-18.phphttp://www.securityfocus.com/archive/1/363636http://www.securityfocus.com/bid/10377