Record summary

CVE-2011-4831 has a selected CVSS score of 4.0; EIP currently links 1 catalogued exploit.

Description

Directory traversal vulnerability in webFileBrowser.php in Web File Browser 0.4b14 allows remote authenticated users to read arbitrary files via a ..%2f (encoded dot dot) in the file parameter in a download action.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBWeb File Browser 0.4b14 - File DownloadExploitDB exploitby Sangyun YOONot analyzed1 file
ExploitDB

PoC details

References

2