Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and earlier allows remote attackers to include or read arbitrary .txt files via the (1) act and (2) blogid parameters.
References
Configurations
History
21 Nov 2024, 00:08
Type | Values Removed | Values Added |
---|---|---|
References | () http://notlegal.ws/simplogsploit.txt - URL Repurposed | |
References | () http://secunia.com/advisories/19115 - Vendor Advisory | |
References | () http://securityreason.com/securityalert/542 - | |
References | () http://www.securityfocus.com/archive/1/426769/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/16965 - | |
References | () http://www.vupen.com/english/advisories/2006/0839 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/25067 - |
14 Feb 2024, 01:17
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) http://notlegal.ws/simplogsploit.txt - URL Repurposed |
Information
Published : 2006-03-08 00:02
Updated : 2024-11-21 00:08
NVD link : CVE-2006-1073
Mitre link : CVE-2006-1073
CVE.ORG link : CVE-2006-1073
JSON object : View
Products Affected
simplog
- simplog
CWE