Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-4458

Опубликовано: 31 авг. 2006
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.4

Описание

Directory traversal vulnerability in calendar/inc/class.holidaycalc.inc.php in phpGroupWare 0.9.16.010 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) sequence and trailing null (%00) byte in the GLOBALS[phpgw_info][user][preferences][common][country] parameter.

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

0.9.16.011-2
edgy

released

0.9.16.011-2
feisty

released

0.9.16.011-2
gutsy

released

0.9.16.011-2
hardy

released

0.9.16.011-2
intrepid

released

0.9.16.011-2
jaunty

released

0.9.16.011-2
karmic

released

0.9.16.011-2
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 91%
0.07325
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

nvd
около 19 лет назад

Directory traversal vulnerability in calendar/inc/class.holidaycalc.inc.php in phpGroupWare 0.9.16.010 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) sequence and trailing null (%00) byte in the GLOBALS[phpgw_info][user][preferences][common][country] parameter.

debian
около 19 лет назад

Directory traversal vulnerability in calendar/inc/class.holidaycalc.in ...

github
больше 3 лет назад

Directory traversal vulnerability in calendar/inc/class.holidaycalc.inc.php in phpGroupWare 0.9.16.010 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) sequence and trailing null (%00) byte in the GLOBALS[phpgw_info][user][preferences][common][country] parameter.

EPSS

Процентиль: 91%
0.07325
Низкий

6.4 Medium

CVSS2