The Phorum download script is prone to directory traversal attacks. This could result in disclosure of sensitive files which are readable by the web server. This problem is due to insufficient sanitization of directory traversal sequences from user-supplied input.
The Phorum download script is prone to directory traversal attacks. This could result in disclosure of sensitive files which are readable by the web server. This problem is due to insufficient sanitization of directory traversal sequences from user-supplied input.