Vulnerabilities > GF 3Xplorer

DATE CVE VULNERABILITY TITLE RISK
2007-12-20 CVE-2007-6476 Information Exposure vulnerability in GF 3Xplorer GF 3Xplorer 2.4
GF-3XPLORER 2.4 allows remote attackers to obtain configuration information via a direct request to explorer/phpinfo.php, which calls the phpinfo function.
network
low complexity
gf-3xplorer CWE-200
5.0
2007-12-20 CVE-2007-6475 Path Traversal vulnerability in GF 3Xplorer GF 3Xplorer 2.4
Multiple directory traversal vulnerabilities in GF-3XPLORER 2.4 allow remote attackers to include and execute arbitrary local files via a ..
network
low complexity
gf-3xplorer CWE-22
6.4
2007-12-20 CVE-2007-6474 Cross-Site Scripting vulnerability in GF 3Xplorer GF 3Xplorer 2.4
Multiple cross-site scripting (XSS) vulnerabilities in GF-3XPLORER 2.4 allow remote attackers to inject arbitrary web script or HTML via the newdir parameter to index_3x.php, and unspecified other vectors.
4.3