CVE-2006-4218

Directory traversal vulnerability in Zen Cart 1.3.0.2 and earlier allows remote attackers to include and possibly execute arbitrary local files via directory traversal sequences in the typefilter parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:zen_cart:zen_cart:1.2.0d:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.1_patch1:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.1d:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.2d:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.3d:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.4d:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.5d:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.2.6d:*:*:*:*:*:*:*
cpe:2.3:a:zen_cart:zen_cart:1.3.0.2:*:*:*:*:*:*:*

History

21 Nov 2024, 00:15

Type Values Removed Values Added
References () http://secunia.com/advisories/21484 - Patch, Vendor Advisory () http://secunia.com/advisories/21484 - Patch, Vendor Advisory
References () http://www.gulftech.org/?node=research&article_id=00109-08152006 - Exploit () http://www.gulftech.org/?node=research&article_id=00109-08152006 - Exploit
References () http://www.securityfocus.com/bid/19543 - () http://www.securityfocus.com/bid/19543 -
References () http://www.vupen.com/english/advisories/2006/3283 - () http://www.vupen.com/english/advisories/2006/3283 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/28395 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/28395 -

Information

Published : 2006-08-17 23:04

Updated : 2024-11-21 00:15


NVD link : CVE-2006-4218

Mitre link : CVE-2006-4218

CVE.ORG link : CVE-2006-4218


JSON object : View

Products Affected

zen_cart

  • zen_cart