cve/2006/CVE-2006-6598.md
2024-06-18 02:51:15 +02:00

731 B

CVE-2006-6598

Description

Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path parameter, a different vector than CVE-2006-6328.

POC

Reference

Github

No PoCs found on GitHub currently.