Lucene search

K
ubuntucveUbuntu.comUB:CVE-2006-4542
HistorySep 05, 2006 - 12:00 a.m.

CVE-2006-4542

2006-09-0500:00:00
ubuntu.com
ubuntu.com
12

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

0.025 Low

EPSS

Percentile

90.1%

Webmin before 1.296 and Usermin before 1.226 do not properly handle a URL
with a null (“%00”) character, which allows remote attackers to conduct
cross-site scripting (XSS), read CGI program source code, list directories,
and possibly execute programs.

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

0.025 Low

EPSS

Percentile

90.1%

Related for UB:CVE-2006-4542