Intrusion Prevention

ABitWhizzy.ABitWhizzy.php.Directory.Traversal

Description

It indicates a possible exploit of a directory traversal vulnerability in abitwhizzy.php in aBitWhizzy.
This flaw is due to an input validation error in the "abitwhizzy.php" script that does not validate the "f" parameter, which could be exploited by malicious people to access and read the contents of arbitrary files via directory traversal attacks.

Affected Products

ABitWhizzy version 5 and prior.

Impact

System compromise

Recommended Actions

Upgrade to the latest version of ABitWhizzy.

CVE References

CVE-2006-6084