"evaluatorComment":"J-Web Pics Navigator is prone to a directory-traversal vulnerability because it fails to properly sanitize user-supplied input. \r\n\r\nAn attacker can exploit this vulnerability to retrieve and edit the contents of arbitrary files from the vulnerable system in the context of the affected application.\r\n\r\nJ-Web Pics Navigator 2.0 is vulnerable to this issue; other versions may also be affected. \r\n\r\nhttp://www.securityfocus.com/bid/22681",
"descriptions":[
{
"lang":"en",
"value":"Directory traversal vulnerability in jwpn-photos.php in J-Web Pics Navigator 2.0 allows remote attackers to list arbitrary directories via a .. (dot dot) in the dir parameter."
},
{
"lang":"es",
"value":"Vulnerabilidad de escalado de directorio en jwpn-photos.php de J-Web Pics Navigator 2.0 permite a atacantes remotos listar directorios de su elecci\u00f3n mediante un .. (punto punto) en el par\u00e1metro dir."