TROYANOSYVIRUS
Back to CVEs

CVE-2004-1505

N/A

Description

Directory traversal vulnerability in index.php in Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to read arbitrary files and possibly execute PHP code via a .. (dot dot) in the show parameter.

CVE Details

CVSS v3.1 ScoreN/A
Published12/31/2004
Last Modified4/16/2026
Sourcenvd
Honeypot Sightings0

Affected Products

salims_softhouse:jaf_cms

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.