6.8
CVE-2006-6257
- EPSS 1.52%
- Veröffentlicht 04.12.2006 11:28:00
- Zuletzt bearbeitet 16.06.2026 22:32:47
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The file manager in AlternC 0.9.5 and earlier, when warnings are enabled in PHP, allows remote attackers to obtain sensitive information via certain folder names such as ones composed of JavaScript code, which reveal the path in a warning message.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.52% | 0.712 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/23144
http://securityreason.com/securityalert/1965
http://www.ground418.org/exploits/read.php?file=06-alternC-095.txt
http://www.securityfocus.com/archive/1/452988/100/0/threaded
http://www.securityfocus.com/bid/21355
http://www.vupen.com/english/advisories/2006/4851