Vulnerabilities > CVE-2007-4092 - Unspecified vulnerability in Ifoto

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
ifoto
exploit available

Summary

Directory traversal vulnerability in index.php in iFoto 1.0.1 and earlier allows remote attackers to list arbitrary directories, and possibly download arbitrary photos, via a .. (dot dot) in the dir parameter.

Vulnerable Configurations

Part Description Count
Application
Ifoto
1

Exploit-Db

descriptioniFoto 1.0 Index.PHP Directory Traversal Vulnerability. CVE-2007-4092 . Webapps exploit for php platform
idEDB-ID:30389
last seen2016-02-03
modified2007-07-25
published2007-07-25
reporterLostmon
sourcehttps://www.exploit-db.com/download/30389/
titleiFoto 1.0 Index.PHP Directory Traversal Vulnerability