Arbitrary Folder Deletion Vulnerability in PHPMyWind 5.5

Arbitrary Folder Deletion Vulnerability in PHPMyWind 5.5

CVE-2019-7403 · MEDIUM Severity

AV:N/AC:L/AU:S/C:N/I:P/A:P

An issue was discovered in PHPMyWind 5.5. It allows remote attackers to delete arbitrary folders via an admin/database_backup.php?action=import&dopost=deldir&tbname=../ URI.

Learn more about our Web Application Penetration Testing UK.