Vulnerabilities > CVE-2007-6214 - Unspecified vulnerability in Learnloop 2.0Beta7

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
learnloop
exploit available

Summary

Directory traversal vulnerability in include/file_download.php in LearnLoop 2.0 beta7 allows remote attackers to read arbitrary files via a .. (dot dot) in the sFilePath parameter. NOTE: exploitation requires that the product is configured, but has zero files in the database.

Vulnerable Configurations

Part Description Count
Application
Learnloop
1

Exploit-Db

descriptionLearnLoop 2.0beta7 (sFilePath) Remote File Disclosure Vulnerability. CVE-2007-6214. Webapps exploit for php platform
fileexploits/php/webapps/4680.txt
idEDB-ID:4680
last seen2016-01-31
modified2007-11-29
platformphp
port
published2007-11-29
reporterGoLd_M
sourcehttps://www.exploit-db.com/download/4680/
titleLearnLoop 2.0beta7 sFilePath Remote File Disclosure Vulnerability
typewebapps