Security Advisory

CVE-2006-5510

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-10-25 22:00:00
Last updated 2024-08-07 19:55:52
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Directory traversal vulnerability in explorer_load_lang.php in PH Pexplorer 0.24 allows remote attackers to include arbitrary local files via ".." sequences in the Language cookie, as demonstrated by uploading a .gif file that contains PHP code.