CVE

Id
6510  
CVE No.
CVE-2002-2128  
Status
Candidate  
Description
editform.php in w-Agora 4.1.5 allows local users to execute arbitrary PHP code via .. (dot dot) sequences in the file parameter.  
Phase
Assigned (20051116)  
Votes
None (candidate not yet proposed)  
Comments