XOOPS 2.5.7.2 Directory Traversal

XOOPS version 2.5.7.2 has checks to defend against directory traversal attacks. However, they can be easily bypassed by simply issuing “…/./” instead of “../”.

Leave a Reply