Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot dot) in the (1) layerstyle parameter to adlayer.php or (2) language parameter to js-form.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-08-20T04:00:00

Updated: 2024-08-07T22:45:00.979Z

Reserved: 2005-08-20T00:00:00

Link: CVE-2005-2635

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-08-23T04:00:00.000

Modified: 2017-07-11T01:32:55.453

Link: CVE-2005-2635

cve-icon Redhat

No data.