CVE Database
/

CVE-2007-1138

Back to search

CVE-2007-1138

Published: Feb 27, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Absolute path traversal vulnerability in list_main_pages.php in Cromosoft Simple Plantilla PHP (SPP) allows remote attackers to list arbitrary directories, and read arbitrary files, via an absolute pathname in the nfolder parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

20070222 Plantilla PHP Simple
mailing-list
x_refsource_BUGTRAQ
2332
third-party-advisory
x_refsource_SREASON
22669
vdb-entry
x_refsource_BID
33138
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now