CVE-2011-5219
25.10.2012, 17:55
Directory traversal vulnerability in examples/show_code.php in mPDF 5.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.
| Vendor | Product | Version |
|---|---|---|
| mpdf1 | mpdf | 𝑥 ≤ 5.3 |
| mpdf1 | mpdf | 5.2 |
𝑥
= Vulnerable software versions
References