EDB-4738
webappsphpVERIFIED
gf-3xplorer 2.4 - Cross-Site Scripting / Local File Inclusion
CVE-2007-6476CVE-2007-6475CVE-2007-6474
MhZ9112/18/2007
Multiple directory traversal vulnerabilities in GF-3XPLORER 2.4 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang_sel parameter to (1) updater.php and (2) thumber.php.