Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-1027

EPSS 0.01% · P3
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-1027

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
feedcreator.class.php (aka the syndication component) in Joomla! 1.0.7 allows remote attackers to obtain sensitive information via a "/" (slash) in the feed parameter to index.php, which reveals the path in an error message.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Joomla 'feedcreator.class.php'出错信息显示路径漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
在Joomla中的feedcreator.class.php(又称联合组件)! 1.0.7允许远程攻击者通过在index.php输入参数中的"/"(斜杠),获取敏感信息,从而在一条出错信息中显示路径。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-1027

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-1027

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-03-07 · 52 CVEs total

CVE-2006-1014PHP mb_send_mail多个安全绕过漏洞
CVE-2006-1030Joomla mod_templatechooser 远程不确定攻击矢量漏洞
CVE-2006-1029Joomla ‘class.inputfilter.php’ 跨站脚本攻击漏洞
CVE-2006-1023HP System Management Homepage目录遍历漏洞
CVE-2006-1026Jfacets profileID GET请求漏洞
CVE-2006-1025AddSoft StoreBot 'Manage.ASP'跨站脚本攻击漏洞
CVE-2006-1024AddSoft StoreBot 'MgrLogin.ASP' SQL注入漏洞
CVE-2006-1028Joomla 'feedcreator.class.php'拒绝服务漏洞
CVE-2006-1016Microsoft Internet Explorer安全漏洞
CVE-2006-1015PHP additional_parameters 参数注入漏洞
CVE-2006-1017PHP c-client library多个安全绕过漏洞
CVE-2006-1013SMBlog index.php 任意PHP指令执行漏洞
CVE-2006-0883OpenSSH远程PAM拒绝服务漏洞
CVE-2006-0741Linux Kernel ELF File Entry Point本地拒绝服务漏洞
CVE-2006-0555Linux Kernel NFS 客户端拒绝服务漏洞
CVE-2006-0554Linux 核心 XFS文件系统本地信息泄露漏洞
CVE-2006-1049Joomla 多个SQL注入漏洞
CVE-2006-1048Joomla绕过预设访问限制并得到某些特权漏洞
CVE-2006-1047Joomla未知影响和攻击矢量漏洞
CVE-2006-1046Monopd 'server.cpp'远程拒绝服务漏洞

Showing top 20 of 52 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-1027

No comments yet


Leave a comment