CVE-2007-0329

download.php in Joonas Viljanen JV2 Folder Gallery allows remote attackers to read sensitive files via a relative pathname in the file parameter, as demonstrated by config/gallerysetup.php. NOTE: this issue might be resultant from a directory traversal vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:joonas_viljanen:jv2_folder_gallery:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:25

Type Values Removed Values Added
References () http://osvdb.org/32811 - () http://osvdb.org/32811 -
References () http://secunia.com/advisories/23724 - Vendor Advisory () http://secunia.com/advisories/23724 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2007/0180 - () http://www.vupen.com/english/advisories/2007/0180 -
References () https://www.exploit-db.com/exploits/3125 - () https://www.exploit-db.com/exploits/3125 -

Information

Published : 2007-01-18 02:28

Updated : 2025-04-09 00:30


NVD link : CVE-2007-0329

Mitre link : CVE-2007-0329

CVE.ORG link : CVE-2007-0329


JSON object : View

Products Affected

joonas_viljanen

  • jv2_folder_gallery