CVE-2009-3151
Directory traversal vulnerability in actions/downloadFile.php in Ultrize TimeSheet 1.2.2 allows remote attackers to read
Directory traversal vulnerability in actions/downloadFile.php in Ultrize TimeSheet 1.2.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the fileName parameter.
MEDIUM · CVSS 5
EPSS 0.02742
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0