CVE-2017-9428

Publication date

2017-06-04 14:00:00

Family

mitre

State

PUBLISHED

Description

A directory traversal vulnerability exists in coreadminajaxdeveloperextensionsfile-browser.php in BigTree CMS through 4.2.18 on Windows, allowing attackers to read arbitrary files via .. sequences in the directory parameter.