Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-3194

Опубликовано: 23 июн. 2006
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

Directory traversal vulnerability in index.php in singapore 0.10.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the (1) gallery and (2) template parameter.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:singapore:singapore:0.9.1_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.2_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.3_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.4_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.5_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.6_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.7:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.7_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.8_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.9a_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.9b_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.10:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.10_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9.11_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.9a_beta:*:*:*:*:*:*:*
cpe:2.3:a:singapore:singapore:0.10.0:*:*:*:*:*:*:*

EPSS

Процентиль: 92%
0.08387
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Directory traversal vulnerability in index.php in singapore 0.10.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the (1) gallery and (2) template parameter.

EPSS

Процентиль: 92%
0.08387
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other