Vulnerabilities > CVE-2007-2642 - Local File Include vulnerability in R2K Gallery 1.7
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
NONE Availability impact
NONE Summary
Directory traversal vulnerability in galeria.php in R2K Gallery 1.7 allows remote attackers to read arbitrary files via a .. (dot dot) in the lang2 parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | R2K Gallery 1.7 (galeria.php lang2) Local File Inclusion Vulnerability. CVE-2007-2642. Webapps exploit for php platform |
file | exploits/php/webapps/3902.txt |
id | EDB-ID:3902 |
last seen | 2016-01-31 |
modified | 2007-05-11 |
platform | php |
port | |
published | 2007-05-11 |
reporter | Dj7xpl |
source | https://www.exploit-db.com/download/3902/ |
title | R2K Gallery 1.7 galeria.php lang2 Local File Inclusion Vulnerability |
type | webapps |
References
- http://attrition.org/pipermail/vim/2007-May/001615.html
- http://osvdb.org/36015
- http://secunia.com/advisories/25261
- http://www.securityfocus.com/bid/23938
- http://www.vupen.com/english/advisories/2007/1783
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34238
- https://www.exploit-db.com/exploits/3902