Vulnerabilities > CVE-2005-0283 - Remote Directory Traversal vulnerability in David Barrett Qwikiwiki 1.4.1

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
david-barrett
exploit available

Summary

Directory traversal vulnerability in index.php in QwikiWiki allows remote attackers to read arbitrary files via a .. (dot dot) and a %00 at the end of the filename in the page parameter.

Vulnerable Configurations

Part Description Count
Application
David_Barrett
1

Exploit-Db

descriptionQWikiwiki Directory Traversal Vulnerability. CVE-2005-0283. Webapps exploit for php platform
idEDB-ID:737
last seen2016-01-31
modified2005-01-04
published2005-01-04
reporterMadelman
sourcehttps://www.exploit-db.com/download/737/
titleQWikiwiki Directory Traversal Vulnerability