Directory traversal vulnerability in the create function in xarMLSXML2PHPBackend.php in Xaraya 1.0 allows remote attackers to create directories and overwrite arbitrary files via ".." sequences in the module parameter to index.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-11-30T11:00:00

Updated: 2024-08-07T23:31:48.794Z

Reserved: 2005-11-30T00:00:00

Link: CVE-2005-3929

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-11-30T11:03:00.000

Modified: 2018-10-19T15:39:33.017

Link: CVE-2005-3929

cve-icon Redhat

No data.