Vulnerabilities > CVE-2007-2934 - Directory Traversal vulnerability in Windy Road Vistered Little 1.6A

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
NONE
Availability impact
NONE
network
low complexity
windy-road
exploit available

Summary

Directory traversal vulnerability in skins/common.css.php in Vistered Little 1.6a allows remote attackers to read arbitrary files via a .. (dot dot) in the skin parameter.

Vulnerable Configurations

Part Description Count
Application
Windy_Road
1

Exploit-Db

descriptionVistered Little 1.6a (skin) Remote File Disclosure Vulnerability. CVE-2007-2934. Webapps exploit for php platform
fileexploits/php/webapps/3999.txt
idEDB-ID:3999
last seen2016-01-31
modified2007-05-28
platformphp
port
published2007-05-28
reporterGoLd_M
sourcehttps://www.exploit-db.com/download/3999/
titleVistered Little 1.6a skin Remote File Disclosure Vulnerability
typewebapps