Directory traversal vulnerability in xs_edit.php in the eXtreme Styles phpBB module 2.2.1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the edit parameter.
Software | From | Fixed in |
---|---|---|
phpbb_styles / extreme_styles_phpbb_module | - | 2.2.1.x |