Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-6369
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6369

Description:
Multiple directory traversal vulnerabilities in resize.php in the PictPress 0.91 and earlier plugin for WordPress allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) size or (2) path parameter.

CVE Status:
Candidate

References:

MILW0RM
  http://www.milw0rm.com/exploits/4695


Return to the previous page.