Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-1219

Опубликовано: 14 мар. 2006
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5

Описание

Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include arbitrary PHP files via ".." (dot dot) sequences in the stepOrder parameter to (1) upgrade/index.php or (2) install/index.php.

РелизСтатусПримечание
dapper

released

2.0.2-1ubuntu0.1
devel

not-affected

edgy

not-affected

feisty

not-affected

gutsy

not-affected

upstream

released

Показывать по

Ссылки на источники

EPSS

Процентиль: 92%
0.10277
Средний

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 19 лет назад

Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include arbitrary PHP files via ".." (dot dot) sequences in the stepOrder parameter to (1) upgrade/index.php or (2) install/index.php.

debian
больше 19 лет назад

Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2. ...

github
больше 3 лет назад

Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include arbitrary PHP files via ".." (dot dot) sequences in the stepOrder parameter to (1) upgrade/index.php or (2) install/index.php.

EPSS

Процентиль: 92%
0.10277
Средний

5 Medium

CVSS2