CVE-2006-5205
Invision Gallery 2.0.7 - Path Traversal
Title source: llmDescription
Directory traversal vulnerability in Invision Gallery 2.0.7 allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the dir parameter in (1) index.php and (2) forum/index.php, when the viewimage command in the gallery module is used.
Exploits (1)
Scores
EPSS
0.0505
EPSS Percentile
89.8%
Details
Status
published
Products (6)
invision_power_services/invision_gallery
1.0.1
invision_power_services/invision_gallery
1.3
invision_power_services/invision_gallery
1.3.1
invision_power_services/invision_gallery
2.0.3
invision_power_services/invision_gallery
2.0.6
invision_power_services/invision_gallery
2.0.7
Published
Oct 10, 2006
Tracked Since
Feb 18, 2026