CVE-2014-3777 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in Reportico PHP Report Designer before 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the xmlin parameter.
Reference
http://packetstormsecurity.com/files/127280/Reportico-Admin-Credential-Leak.html http://seclists.org/fulldisclosure/2014/Jun/144 http://www.osvdb.org/108612 http://www.secveritas.com/secv-05-1402.html
Share on: