CVE

Id
67085  
CVE No.
CVE-2013-7138  
Status
Candidate  
Description
Directory traversal vulnerability in lib/functions/d-load.php in Horizon Quick Content Management System (QCMS) 4.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the start parameter.  
Phase
Assigned (20131218)  
Votes
None (candidate not yet proposed)  
Comments