Vulnerabilities > CVE-2006-6185 - Directory Traversal vulnerability in Wabbit PHP Gallery 0.9
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
Directory traversal vulnerability in script.php in Wabbit PHP Gallery 0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter to index.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Wabbit PHP Gallery 0.9 Dir Parameter Directory Traversal Vulnerability. CVE-2006-6185. Webapps exploit for php platform |
id | EDB-ID:29145 |
last seen | 2016-02-03 |
modified | 2006-11-20 |
published | 2006-11-20 |
reporter | the_Edit0r |
source | https://www.exploit-db.com/download/29145/ |
title | Wabbit PHP Gallery 0.9 Dir Parameter Directory Traversal Vulnerability |
References
- http://secunia.com/advisories/22994
- http://securityreason.com/securityalert/1939
- http://www.attrition.org/pipermail/vim/2006-November/001152.html
- http://www.securityfocus.com/archive/1/452170/100/100/threaded
- http://www.securityfocus.com/bid/21213
- http://www.vupen.com/english/advisories/2006/4640
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30429