Unrated severityNVD Advisory· Published Jan 13, 2015· Updated May 6, 2026
CVE-2014-10010
CVE-2014-10010
Description
Directory traversal vulnerability in PHPJabbers Appointment Scheduler 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter in a pjActionDownload action to the pjBackup controller.
Affected products
1- cpe:2.3:a:phpjabbers:appointment_scheduler:2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.