Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-1017

EPSS 2.74% · P86
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-1017

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The c-client library 2000, 2001, or 2004 for PHP before 4.4.4 and 5.x before 5.1.5 do not check the (1) safe_mode or (2) open_basedir functions, and when used in applications that accept user-controlled input for the mailbox argument to the imap_open function, allow remote attackers to obtain access to an IMAP stream data structure and conduct unauthorized IMAP actions.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
PHP c-client library多个安全绕过漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
用于PHP的c-client library 2000、2001、或2004在4.4.4版本之前和5.1.5版本之前的5.x,不会检查(1) safe_mode 或(2) open_basedir 函数,还有当使用在用于imap_open函数的邮箱参数并接受用户控制输入的应用程序中时,会使远程攻击者取得对一条IMAP流数据结构的访问和实施非法操作。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-1017

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-1017

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-03-07 · 52 CVEs total

CVE-2006-1014PHP mb_send_mail多个安全绕过漏洞
CVE-2006-1030Joomla mod_templatechooser 远程不确定攻击矢量漏洞
CVE-2006-1029Joomla ‘class.inputfilter.php’ 跨站脚本攻击漏洞
CVE-2006-1024AddSoft StoreBot 'MgrLogin.ASP' SQL注入漏洞
CVE-2006-1027Joomla 'feedcreator.class.php'出错信息显示路径漏洞
CVE-2006-1026Jfacets profileID GET请求漏洞
CVE-2006-1025AddSoft StoreBot 'Manage.ASP'跨站脚本攻击漏洞
CVE-2006-1028Joomla 'feedcreator.class.php'拒绝服务漏洞
CVE-2006-1016Microsoft Internet Explorer安全漏洞
CVE-2006-1015PHP additional_parameters 参数注入漏洞
CVE-2006-1018DCI-Designs Dawaween 'poems.php' SQL注入漏洞
CVE-2006-1013SMBlog index.php 任意PHP指令执行漏洞
CVE-2006-0883OpenSSH远程PAM拒绝服务漏洞
CVE-2006-0741Linux Kernel ELF File Entry Point本地拒绝服务漏洞
CVE-2006-0555Linux Kernel NFS 客户端拒绝服务漏洞
CVE-2006-0554Linux 核心 XFS文件系统本地信息泄露漏洞
CVE-2006-1049Joomla 多个SQL注入漏洞
CVE-2006-1048Joomla绕过预设访问限制并得到某些特权漏洞
CVE-2006-1047Joomla未知影响和攻击矢量漏洞
CVE-2006-1046Monopd 'server.cpp'远程拒绝服务漏洞

Showing top 20 of 52 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-1017

No comments yet


Leave a comment