CVE-2006-1224

GuppY 4.5.11 - Path Traversal

Title source: llm

Description

Directory traversal vulnerability in dwnld.php in GuppY 4.5.11 allows remote attackers to overwrite arbitrary files via a "%2E." (mixed encoding) in the pg parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by trueend5 · phpdosphp
https://www.exploit-db.com/exploits/1573

Scores

EPSS 0.1047
EPSS Percentile 93.3%

Details

Status published
Products (11)
guppy/guppy 2.4
guppy/guppy 2.4_p1
guppy/guppy 2.4_p3
guppy/guppy 2.4_p4
guppy/guppy 4.5
guppy/guppy 4.5.3
guppy/guppy 4.5.3a
guppy/guppy 4.5.4
guppy/guppy 4.5.9
guppy/guppy 4.5.10
... and 1 more
Published Mar 14, 2006
Tracked Since Feb 18, 2026