← Back to CVEs
CVE-2011-0405
N/ADescription
Directory traversal vulnerability in module.php in PhpGedView 4.2.3 and possibly other versions, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory traversal sequences in the pgvaction parameter.
CVE Details
CVSS v3.1 ScoreN/A
Published1/11/2011
Last Modified4/29/2026
Sourcenvd
Honeypot Sightings0
Affected Products
phpgedview:phpgedview
Weaknesses (CWE)
CWE-22
References
http://osvdb.org/70295(cve@mitre.org)
http://secunia.com/advisories/42786(cve@mitre.org)
http://www.exploit-db.com/exploits/15913(cve@mitre.org)
http://www.securityfocus.com/bid/45674(cve@mitre.org)
http://www.vupen.com/english/advisories/2011/0036(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/64733(cve@mitre.org)
http://osvdb.org/70295(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/42786(af854a3a-2127-422b-91ae-364da2661108)
http://sourceforge.net/projects/phpgedview/forums/forum/185166/topic/4040059(af854a3a-2127-422b-91ae-364da2661108)
http://sourceforge.net/tracker/?func=detail&aid=3152857&group_id=55456&atid=477081(af854a3a-2127-422b-91ae-364da2661108)
http://www.exploit-db.com/exploits/15913(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/45674(af854a3a-2127-422b-91ae-364da2661108)
http://www.vupen.com/english/advisories/2011/0036(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/64733(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.