CVE Database · CVE-2004-0327
CVSS v3.1
N/A
EPSS
7.95%
Published
Nov 23, 2004
Modified
Jun 16, 2026
Public PoC / Exploit (4)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Directory traversal vulnerability in functions.php in PhpNewsManager 1.46 allows remote attackers to retrieve arbitrary files via .. (dot dot) sequences in the clang parameter.
Affected Products (1)
References (8)