CVE Database
/

CVE-2006-6259

Back to search

CVE-2006-6259

Published: Dec 4, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple directory traversal vulnerabilities in (a) class/functions.php and (b) class/m_bro.php in AlternC 0.9.5 and earlier allow remote attackers to (1) create arbitrary files and directories via a .. (dot dot) in the "create name" field and (2) read arbitrary files via a .. (dot dot) in the "web root" field when configuring a subdomain.

VendorProductVersions

n/a

n/a

affected
n/a

References

21355
vdb-entry
x_refsource_BID
1965
third-party-advisory
x_refsource_SREASON
23144
third-party-advisory
x_refsource_SECUNIA
ADV-2006-4851
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now