CVE-2011-4807

Publication date

2011-12-14 00:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in main.php in phpAlbum 0.4.1.16 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the var1 parameter.