Security Advisory

CVE-2005-2169

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-07-06 04:00:00
Last updated 2024-09-17 04:25:15
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in source.php in Quick & Dirty PHPSource Printer 1.1 and earlier allows remote attackers to read arbitrary files via ".../...//" sequences in the file parameter, which are reduced to "../" when PHPSource Printer uses a regular expression to remove "../" sequences.