Directory traversal vulnerability in vote.cgi for Mike Spice Mike's Vote CGI before 1.3 allows remote attackers to write arbitrary files via .. (dot dot) sequences in the type parameter.
| Software | From | Fixed in |
|---|---|---|
| mike_spice / mikes_vote_cgi | 1.1 | 1.1.x |
| mike_spice / mikes_vote_cgi | 1.0 | 1.0.x |
| mike_spice / mikes_vote_cgi | 1.2 | 1.2.x |