Vulnerability CVE-2006-5188


Published: 2006-10-10   Modified: 2012-02-12

Description:
Directory traversal vulnerability in download.php in webGENEius GOOP Gallery 2.0.2 allows remote attackers to read or list data from certain files or directories via unspecified vectors.

See advisories in our WLB2 database:
Topic
Author
Date
Med.
Directory Traversal Vulnerability in Goop Gallery 2.0.2
security armoriz...
11.10.2006

Type:

CWE-Other

CVSS2 => (AV:N/AC:L/Au:N/C:P/I:N/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
5/10
2.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
None
None
Affected software
Webgeneius -> Goop gallery 

 References:
http://securityreason.com/securityalert/1698
http://securitytracker.com/id?1016983
http://www.armorize.com/resources/vulnerability.php?Keyword=Armorize-ADV-2006-0004
http://www.securityfocus.com/archive/1/447647/100/0/threaded
http://www.securityfocus.com/archive/1/448258/100/100/threaded
http://www.securityfocus.com/archive/1/448946/100/0/threaded
http://www.securityfocus.com/bid/20331
https://exchange.xforce.ibmcloud.com/vulnerabilities/29339

Copyright 2024, cxsecurity.com

 

Back to Top