Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path parameter, a different vector than CVE-2006-6328.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2006-12-15T22:00:00

Updated: 2024-08-07T20:33:59.745Z

Reserved: 2006-12-15T00:00:00

Link: CVE-2006-6598

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2006-12-15T22:28:00.000

Modified: 2017-10-19T01:29:48.737

Link: CVE-2006-6598

cve-icon Redhat

No data.