CVE-2006-3194
Published Jun 23, 2006
Last updated 6 years ago
Overview
- Description
- Directory traversal vulnerability in index.php in singapore 0.10.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the (1) gallery and (2) template parameter.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.4
- Impact score
- 4.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:singapore:singapore:0.9.1_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0AC1508-0AC0-412C-A1D7-E5E822BE44C1" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.2_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ACACF5FB-A2FD-4176-BE8C-28F71ECD2712" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.3_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B16CB109-13CC-4493-8DC9-0798252A241E" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.4_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8072C488-C0F3-47C4-AC07-325DB9E41D67" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.5_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A018C38A-F41A-4F93-93FA-3BA26ACB89DB" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.6_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0A045A4-A4EE-4972-98D2-268E89D5598B" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "238FF55F-E3DE-441E-A857-01A3256F5CC4" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.7_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CE991696-4495-4EDF-8C77-C23F76F85D07" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.8_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6113F201-6A7C-483F-9856-1012F61CD2AC" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.9a_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7A77681F-82C5-460E-BC61-0BF56C7DB547" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.9b_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47B599D0-F74C-43CD-ADED-132D64E534E8" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B2148867-BF1B-4746-B6E7-EE1E4590A2F0" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.10_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "02090A42-3240-4BC9-BAE6-809C1CB6E752" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9.11_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2F44CBEE-07CF-4D4B-BD89-9816624D4451" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "970981E9-43DD-4434-9DFD-22B36C8D4386" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.9a_beta:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AB034BEA-FE80-420A-8428-3DEE6BBA7323" }, { "criteria": "cpe:2.3:a:singapore:singapore:0.10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3CBBBAF-5CC8-464C-907F-B452668106DA" } ], "operator": "OR" } ] } ]