CVE-2006-0702

admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the lack of details, the specific vulnerability type cannot be determined, although it might be due to directory traversal.
Configurations

Configuration 1 (hide)

cpe:2.3:a:imagevue:imagevue:0.16.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-02-15 11:06

Updated : 2024-02-04 16:52


NVD link : CVE-2006-0702

Mitre link : CVE-2006-0702

CVE.ORG link : CVE-2006-0702


JSON object : View

Products Affected

imagevue

  • imagevue