VYPR

A.l Pifou

by A.l Pifou

CVEs (1)

  • CVE-2006-4914Sep 21, 2006
    risk 0.00cvss epss 0.02

    Directory traversal vulnerability in A.l-Pifou 1.8p2 allows remote attackers to read arbitrary files via ".." sequences in the ze_langue_02 cookie, as demonstrated by using the choix_lng parameter to choix_langue.php to indirectly set the cookie, then accessing livre_dor.php to…