CVE-2006-7110

Drupal Imce Module < 1.5 - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in the delete function in IMCE before 1.6, a Drupal module, allows remote authenticated users to delete arbitrary files via ".." sequences.

Scores

EPSS 0.0150
EPSS Percentile 80.9%

Classification

Status draft

Affected Products (1)

drupal/imce_module < 1.5

Timeline

Published Mar 05, 2007
Tracked Since Feb 18, 2026