CVE-2006-0899

4images Image Gallery Management System < 1.7.1 - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in index.php in 4Images 1.7.1 and earlier allows remote attackers to read and include arbitrary files via ".." (dot dot) sequences in the template parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · phpwebappsphp
https://www.exploit-db.com/exploits/1533

Scores

EPSS 0.1855
EPSS Percentile 95.3%

Details

Status published
Products (1)
4images/image_gallery_management_system < 1.7.1
Published Feb 27, 2006
Tracked Since Feb 18, 2026