CVE-2014-8939: Path Traversal
Published Jun 1, 2020
·Updated
Lexiglot through 2014-11-20 allows remote attackers to obtain sensitive information (full path) via an include/smarty/plugins/modifier.dateformat.php request if PHP has a non-recommended configuration that produces warning messages.
Affected Software
1 affected component
piwigo Lexiglot<=2014-11-20
Event History
Jun 1, 2020
CVE Published
via MITRE·04:25 PM
Data Sourced
via MITRE·04:25 PM
Description