CVE-2005-3156

Directory traversal vulnerability in printfaq.php in EasyGuppy (Guppy for Windows) 4.5.4 and 4.5.5 allows remote attackers to read arbitrary files via ".." sequences in the pg parameter, which is cleansed for XSS but not directory traversal.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:easyguppy:easyguppy:4.5.4:*:*:*:*:*:*:*
cpe:2.3:a:easyguppy:easyguppy:4.5.5:*:*:*:*:*:*:*

History

21 Nov 2024, 00:01

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=112812059917394&w=2 - () http://marc.info/?l=bugtraq&m=112812059917394&w=2 -

Information

Published : 2005-10-05 23:02

Updated : 2024-11-21 00:01


NVD link : CVE-2005-3156

Mitre link : CVE-2005-3156

CVE.ORG link : CVE-2005-3156


JSON object : View

Products Affected

easyguppy

  • easyguppy