Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-6735

Опубликовано: 26 дек. 2006
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

modules/viewcategory.php in Minh Nguyen Duong Obie Website Mini Web Shop 2.1.c allows remote attackers to obtain sensitive information via a request with an arbitrary catname parameter but no itemsdb parameter, which reveals the path in an error message. NOTE: CVE analysis suggests that this error might be resultant from a more serious issue such as directory traversal.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:obie_website:mini_web_shop:2.1.c:*:*:*:*:*:*:*

EPSS

Процентиль: 49%
0.00258
Низкий

5 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

github
почти 4 года назад

modules/viewcategory.php in Minh Nguyen Duong Obie Website Mini Web Shop 2.1.c allows remote attackers to obtain sensitive information via a request with an arbitrary catname parameter but no itemsdb parameter, which reveals the path in an error message. NOTE: CVE analysis suggests that this error might be resultant from a more serious issue such as directory traversal.

EPSS

Процентиль: 49%
0.00258
Низкий

5 Medium

CVSS2

Дефекты

CWE-200