CVE-2014-10037: Domphp

High severity, CVSS 7.5. EPSS: 18.8% chance of exploitation in the next 30 days.

Directory traversal vulnerability in DomPHP 0.83 and earlier allows remote attackers to have unspecified impact via a .. (dot dot) in the url parameter to photoalbum/index.php.

Affected products

  • Domphp Domphp: up to and including 0.83

Published 2015-01-13. Last modified 2026-06-17.