Files
CVEs-PoC/2006/CVE-2006-0707.md
T
2025-09-29 21:09:30 +02:00

713 B

CVE-2006-0707

Description

PyBlosxom before 1.3.2, when running on certain webservers, allows remote attackers to read arbitrary files via an HTTP request with multiple leading / (slash) characters, which is accessed using the PATH_INFO variable.

POC

Reference

Github

No PoCs found on GitHub currently.