High
CVSS 7.5
Overview
Directory traversal vulnerability in index.php in Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to read arbitrary files and possibly execute PHP code via a .. (dot dot) in the show parameter.
Directory traversal vulnerability in index.php in Just Another Flat file (JAF) C...
Directory traversal vulnerability in index.php in Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to read arbitrary files and possibly execute PHP code via a .. (dot dot) in the show parameter.
This vulnerability is rated 🟠 HIGH.
Recommended actions: