Filtered by vendor Vlad Leont
Subscribe
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2007-0620 | 1 Vlad Leont | 1 Fd Script | 2024-11-21 | 5.0 MEDIUM | N/A |
download.php in FD Script 1.3.2 and earlier allows remote attackers to read source of files under the web document root with certain extensions, including .php, via a relative pathname in the fname parameter, as demonstrated by downloading config.php. |