Vulnerabilities > CVE-2006-4579 - Remote vulnerability in the Address Book the Address Book 1.04E

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
the-address-book

Summary

Directory traversal vulnerability in users.php in The Address Book 1.04e allows remote attackers to include arbitrary files via a .. (dot dot) in the language parameter.

Vulnerable Configurations

Part Description Count
Application
The_Address_Book
1