Vulnerabilities > CVE-2006-5896 - Unspecified vulnerability in Remlab web Mech Designer 2.0.5
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
REMLAB Web Mech Designer 2.0.5 allows remote attackers to obtain the full path of the script via an incorrect Tonnage parameter to calculate.php that triggers a divide-by-zero error, which leaks the path in an error message.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-November/050879.html
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-November/050879.html
- http://netvigilance.com/advisory0007
- http://netvigilance.com/advisory0007
- http://securityreason.com/securityalert/1911
- http://securityreason.com/securityalert/1911
- http://www.osvdb.org/30264
- http://www.osvdb.org/30264
- http://www.securityfocus.com/archive/1/453020/100/0/threaded
- http://www.securityfocus.com/archive/1/453020/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30538
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30538