CVE-2002-2128

editform.php in w-Agora 4.1.5 allows local users to execute arbitrary PHP code via .. (dot dot) sequences in the file parameter.

Scoring

CVSS base score
0
EPSS probability
0.06%
Published
2005-11-16
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs