Unrated severityNVD Advisory· Published Jan 11, 2011· Updated Apr 29, 2026
CVE-2011-0405
CVE-2011-0405
Description
Directory traversal vulnerability in module.php in PhpGedView 4.2.3 and possibly other versions, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory traversal sequences in the pgvaction parameter.
Affected products
1- cpe:2.3:a:phpgedview:phpgedview:4.2.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- sourceforge.net/tracker/nvdPatch
- sourceforge.net/projects/phpgedview/forums/forum/185166/topic/4040059nvdExploit
- www.exploit-db.com/exploits/15913nvdExploit
- secunia.com/advisories/42786nvdVendor Advisory
- www.vupen.com/english/advisories/2011/0036nvdVendor Advisory
- osvdb.org/70295nvd
- www.securityfocus.com/bid/45674nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/64733nvd
News mentions
0No linked articles in our index yet.