CVE-2013-6226: Path Traversal
Directory traversal vulnerability in plugins/editor.zoho/agent/savezoho.php in the Zoho plugin in Pydio (formerly AjaXplorer) before 5.0.4 allows remote attackers to read or delete arbitrary files via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6226?
CVE-2013-6226 is rated as a moderate severity directory traversal vulnerability affecting multiple versions of the Ajaxplorer software.
How do I fix CVE-2013-6226?
To fix CVE-2013-6226, upgrade to Ajaxplorer version 5.0.4 or later, which includes a patch for this vulnerability.
What can attackers exploit in CVE-2013-6226?
Attackers can exploit CVE-2013-6226 to read or delete arbitrary files on the server due to insufficient input validation.
Which versions of Ajaxplorer are affected by CVE-2013-6226?
CVE-2013-6226 affects all versions of Ajaxplorer prior to 5.0.4, including versions 2.3.3 to 5.0.3.
Is CVE-2013-6226 a remote vulnerability?
Yes, CVE-2013-6226 is a remote vulnerability, allowing attackers to exploit it without physical access to the affected system.