Логотип exploitDog
bind:CVE-2006-1480
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2006-1480

Количество 2

Количество 2

nvd логотип

CVE-2006-1480

почти 20 лет назад

Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter.

CVSS2: 5.1
EPSS: Низкий
github логотип

GHSA-frc3-6h9v-9jxc

почти 4 года назад

Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2006-1480

Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter.

CVSS2: 5.1
7%
Низкий
почти 20 лет назад
github логотип
GHSA-frc3-6h9v-9jxc

Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter.

7%
Низкий
почти 4 года назад

Уязвимостей на страницу