Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and earlier allows remote attackers to include or read arbitrary .txt files via the (1) act and (2) blogid parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.099
EPSS Ranking 92.7%