Back

CVE-2003-1239

Directory traversal vulnerability in sendphoto.php in WihPhoto 0.86 allows remote attackers to read arbitrary files via .. specifiers in the album parameter, and the target filename in the pic parameter.

Published: Dec 31, 2003 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
wihphoto wihphoto 0.86

GitHub Security Advisory GHSA-5pp8-4vfm-hgxf

Directory traversal vulnerability in sendphoto.php in WihPhoto 0.86 allows remote attackers to...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 7.18%

Top 6% most likely to be exploited

Threat Score 22.2 / 100

Data Sources

NVD EPSS GitHub