CVE-2007-5739

Directory traversal vulnerability in component/flashupload/download.jsp in the FlashUpload component in Korean GHBoard allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.

Date published : 2007-10-30

http://www.securityfocus.com/bid/26182

http://www.securityfocus.com/archive/1/482687/100/0/threaded