Lucene search

K
cveMitreCVE-2006-6568
HistoryDec 15, 2006 - 11:28 a.m.

CVE-2006-6568

2006-12-1511:28:00
mitre
web.nvd.nist.gov
41
cve
2006
6568
directory traversal
vulnerability
knowledge base
mxbb

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.007

Percentile

79.6%

Directory traversal vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allows remote attackers to include arbitrary files via a … (dot dot) sequence in the phpEx parameter.

Affected configurations

Nvd
Node
mxbbkb_modsMatch2.0.2
VendorProductVersionCPE
mxbbkb_mods2.0.2cpe:2.3:a:mxbb:kb_mods:2.0.2:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.007

Percentile

79.6%

Related for CVE-2006-6568