Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-6852

Опубликовано: 31 дек. 2006
Источник: nvd
CVSS2: 6
EPSS Низкий

Описание

Eval injection vulnerability in tDiary 2.0.3 and 2.1.4.200 61127 allows remote authenticated users to execute arbitrary Ruby code via unspecified vectors, possibly related to incorrect input validation by (1) conf.rhtml and (2) i.conf.rhtml. NOTE: some of these details are obtained from third party information.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:tdiary:tdiary:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:tdiary:tdiary:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:tdiary:tdiary:2.0.3:*:*:*:*:*:*:*

EPSS

Процентиль: 75%
0.00897
Низкий

6 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

debian
около 19 лет назад

Eval injection vulnerability in tDiary 2.0.3 and 2.1.4.200 61127 allow ...

github
почти 4 года назад

Eval injection vulnerability in tDiary 2.0.3 and 2.1.4.200 61127 allows remote authenticated users to execute arbitrary Ruby code via unspecified vectors, possibly related to incorrect input validation by (1) conf.rhtml and (2) i.conf.rhtml. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 75%
0.00897
Низкий

6 Medium

CVSS2

Дефекты

CWE-20