CVE-2005-2997

M

ultiple directory traversal vulnerabilities in PHP Advanced Transfer Manager 1.30 allow remote attackers to read arbitrary files via ".." sequences in (1) the currentdir parameter to txt.php, or the current_dir parameter to (2) htm.php or (3) html.php.

Configurations

Configuration 1 (hide)

cpe:2.3:a:bugada_andrea:php_advanced_transfer_manager:1.30:*:*:*:*:*:*:*

History

21 Nov 2024, 00:00

Type Values Removed Values Added
References () http://rgod.altervista.org/phpatm130.html - Exploit () http://rgod.altervista.org/phpatm130.html - Exploit
References () http://secunia.com/advisories/16867 - () http://secunia.com/advisories/16867 -

Information

Published : 2005-09-20 22:03

Updated : 2025-04-03 01:03


NVD link : CVE-2005-2997

Mitre link : CVE-2005-2997

CVE.ORG link : CVE-2005-2997


JSON object : View