7.5

CVE-2006-1599

Unspecified vulnerability in VCEngine.php in v-creator before 1.3-pre3, when the VC_CRYPTO_METHOD option is OPENSSL, allows remote attackers to execute arbitrary commands, possibly due to problems in the (1) encrypt and (2) decrypt functions.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
V-creator.ComV-creator Version1.3_pre2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.48% 0.876
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/19453
Patch
Vendor Advisory
http://sourceforge.net/forum/forum.php?forum_id=557129
http://www.osvdb.org/24304
http://www.securityfocus.com/bid/17328
http://www.vupen.com/english/advisories/2006/1189
https://exchange.xforce.ibmcloud.com/vulnerabilities/25560
https://sourceforge.net/p/vcreator/news/2006/03/v-creator-v13-pre3-released/