Loading...
Loading...
Directory traversal vulnerability in SQL-Ledger, and LedgerSMB before 1.1.5, allows remote attackers to read and overwrite arbitrary files, and execute arbitrary code, via . (dot) characters adjacent to (1) users and (2) users/members strings, which are removed by blacklisting functions that filter these strings and collapse into .. (dot dot) sequences.
March 7, 2007
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-1329
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.