Skip to content
Saturday, December 6, 2025
Medium Published: Dec 15, 2007 Modified: Apr 09, 2025

CVE-2007-6369

5 CVSS SCORE
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N
Share:

Description

Multiple directory traversal vulnerabilities in resize.php in the PictPress 0.91 and earlier plugin for WordPress allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) size or (2) path parameter.

CVSS Vector Details

Attack Vector Network
Attack Complexity Low
Confidentiality P
Integrity None
Availability None

Affected Software Configurations

  • a wordpress pictpress * * * * * * * *

Weaknesses (CWE)

  • CWE-22