Show filters
12 Total Results
Displaying 11-12 of 12
Sort by:
Attacker Value
Unknown

CVE-2005-2147

Disclosure Date: July 06, 2005 (last updated February 22, 2025)
Trac before 0.8.4 allows remote attackers to read or upload arbitrary files via a full pathname in the id parameter to the (1) upload or (2) attachment viewer scripts.
0
Attacker Value
Unknown

CVE-2005-2007

Disclosure Date: June 19, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in Edgewall Trac 0.8.3 and earlier allows remote attackers to read or write arbitrary files via a .. (dot dot) in the id parameter to the (1) upload or (2) attachment scripts.
0