PT-2006-1755 · Imagevue · Imagevue
Published
2006-02-15
·
Updated
2017-07-20
·
CVE-2006-0701
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
imageVue version 16.1
Description
The issue allows remote attackers to list directories by modifying the
path and ext parameters in the readfolder.php file.Recommendations
For imageVue version 16.1, consider restricting access to the readfolder.php file until a patch is available. As a temporary workaround, avoid using the
path and ext parameters in the readfolder.php file to minimize the risk of exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Imagevue