Unrated severityNVD Advisory· Published Oct 30, 2007· Updated Jun 16, 2026
CVE-2007-5732
CVE-2007-5732
Description
Directory traversal vulnerability in downloadfile.php in eLouai's Force Download of media files script, as available on 20071030 and earlier, allows remote attackers to read arbitrary files via the file parameter. NOTE: this issue only occurs in environments where the system administrator has not followed the vendor recommendations that this product should only be used internally.
Affected products
2- cpe:2.3:a:elouai:force_download:*:*:*:*:*:*:*:*
- Range: <=20071030
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.