CVE-2005-3557

Publication date

2005-11-16 07:37:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in admin/defaults.php in PHPlist 2.10.1 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) in the selected%5B%5D parameter in an HTTP POST request.