VYPR
Unrated severityNVD Advisory· Published Oct 5, 2005· Updated Apr 16, 2026

CVE-2005-3156

CVE-2005-3156

Description

Directory traversal vulnerability in printfaq.php in EasyGuppy (Guppy for Windows) 4.5.4 and 4.5.5 allows remote attackers to read arbitrary files via ".." sequences in the pg parameter, which is cleansed for XSS but not directory traversal.

Affected products

2
  • cpe:2.3:a:easyguppy:easyguppy:4.5.4:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:easyguppy:easyguppy:4.5.4:*:*:*:*:*:*:*
    • cpe:2.3:a:easyguppy:easyguppy:4.5.5:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.