Back
CVE-2003-1239
Directory traversal vulnerability in sendphoto.php in WihPhoto 0.86 allows remote attackers to read arbitrary files via .. specifiers in the album parameter, and the target filename in the pic parameter.
Published: Dec 31, 2003
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| wihphoto | wihphoto | 0.86 |
GitHub Security Advisory GHSA-5pp8-4vfm-hgxf
Directory traversal vulnerability in sendphoto.php in WihPhoto 0.86 allows remote attackers to...
References (8)
- http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0092.html Exploit, Patch
- http://www.iss.net/security_center/static/11429.php
- http://www.securityfocus.com/archive/1/312966 Exploit, Patch
- http://www.securityfocus.com/bid/6929 Exploit, Patch
- http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0092.html Exploit, Patch
- http://www.iss.net/security_center/static/11429.php
- http://www.securityfocus.com/archive/1/312966 Exploit, Patch
- http://www.securityfocus.com/bid/6929 Exploit, Patch
Risk Scores
CVSS Score
5.0 / 10
EPSS Score
7.18%
Top 6% most likely to be exploited
Threat Score
22.2 / 100
Data Sources
NVD
EPSS
GitHub