CVE-2006-5319

Directory traversal vulnerability in redir.php in Foafgen 0.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the foaf parameter.

Score5.0
Access VectorNETWORK
Access ComplexityLOW
AuthenticationNONE
Confidentiality ImpactPARTIAL
Integrity ImpactNONE
Availability ImpactNONE
Published2006-10-17 01:07:00.000-04
Last Modified2018-10-17 05:42:10.000-04

Vulnerable Software List

VendorProductVersions
Toxi Foafgen 0.3

References

SourceLink
MISChttp://acid-root.new.fr/poc/13061007.txt
SREASON1734
BUGTRAQ20061007 7 php scripts File Inclusion / Source disclosure Vuln
BID20454
VUPENADV-2006-4009
XFfoafgen-redir-source-disclosure(29443)
EXPLOIT-DB2506