CVE Database
/

CVE-2006-4651

Back to search

CVE-2006-4651

Published: Sep 9, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Directory traversal vulnerability in download/index.php, and possibly download.php, in threesquared.net (aka Ben Speakman) Php download allows remote attackers to overwrite arbitrary local files via .. (dot dot) sequence in the file parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

21774
third-party-advisory
x_refsource_SECUNIA
20060902 php download local file include
mailing-list
x_refsource_BUGTRAQ
1528
third-party-advisory
x_refsource_SREASON
19872
vdb-entry
x_refsource_BID
ADV-2006-3479
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now