Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-0244

EPSS 13.76% · P94
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-0244

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Directory traversal vulnerability in workspaces.php in phpXplorer 0.9.33 allows remote attackers to include arbitrary files via a .. (dot dot) and trailing null byte (%00) in the sShare parameter. NOTE: a followup post claims that this is not a vulnerability since the functionality of phpXplorer supports the upload of PHP files, which would not cross privilege boundaries since the PHP functionality would support read access outside the web root
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
phpXplorer Workspaces.PHP目录遍历漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
** 有争议 ** phpXplorer 0.9.33的workspaces.php中的目录遍历漏洞,可让远程攻击者通过sShare参数中的..(两点)和结尾的空字节(%00)包含任意文件。注意:后续发布的信息声称这不是漏洞,因为phpXplorer的功能支持上传PHP文件,既然PHP功能支持Web根目录范围之外的读访问权,因此不会跨越特权边界。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-0244

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-0244

Please Login to view more intelligence information

Same Patch Batch · n/a · 2006-01-18 · 62 CVEs total

CVE-2006-0271Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0285Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0288Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0287Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0286Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0276Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0275Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0274Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0273Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0272Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0277Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0270Oracle 2006年1月更新修复多个安全漏洞
CVE-2006-0269Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0268Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0267Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0266Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0265Oracle 2006年1月更新修复多个安全漏洞
CVE-2006-0263Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0262Oracle DBMS绕过登录访问控制漏洞
CVE-2006-0261Oracle DBMS绕过登录访问控制漏洞

Showing top 20 of 62 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-0244

No comments yet


Leave a comment