Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-4651

EPSS 1.18% · P79
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-4651

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Directory traversal vulnerability in download/index.php, and possibly download.php, in threesquared.net (aka Ben Speakman) Php download allows remote attackers to overwrite arbitrary local files via .. (dot dot) sequence in the file parameter.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
PHP Download 'Download.PHP'目录遍历漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
threesquared.net(也称为Ben Speakman)Php download的download/index.php可能还有download.php中存在目录遍历漏洞,远程攻击者可以通过文件参数(该参数中包含..)序列覆盖任意本地文件。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-4651

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-4651

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-09-09 · 22 CVEs total

CVE-2006-4660ICQ Toolbar 1.3 for IE 多个跨站脚本攻击漏洞
CVE-2006-4670Photokorn 多个PHP远程文件包含漏洞
CVE-2006-4669Somery 'Include.PHP' PHP远程文件包含漏洞
CVE-2006-4668AckerTodo 'Index.PHP'跨站脚本攻击漏洞
CVE-2006-4667RunCms 多个SQL注入漏洞
CVE-2006-4666WMNews 多个PHP远程文件包含漏洞
CVE-2006-4665MKPortal M1.1 Rc 'index.php'跨站脚本攻击漏洞
CVE-2006-4664Premod Shadow 'Functions_Portal.PHP'PHP远程文件包含漏洞
CVE-2006-4663Linux kernel 安全漏洞
CVE-2006-4662ICQ Pro 2003b 堆溢出漏洞
CVE-2006-4661ICQ Toolbar 1.3 for IE多个安全漏洞
CVE-2006-4294TWiki Viewfile 目录遍历漏洞
CVE-2006-4659Panda Platinum Internet Security 本地提权漏洞
CVE-2006-4658Panda Platinum Internet Security 本地提权漏洞
CVE-2006-4657Panda Platinum Internet Security 本地提权漏洞
CVE-2006-4656Web-Provence SL_Site 'Spaw_control.class.PHP'PHP远程文件包含漏洞
CVE-2006-4655X.Org 字符控制函数 缓冲区溢出漏洞
CVE-2006-4654Easy Address Book Web Server 格式串处理漏洞
CVE-2006-4653Amazing Little Picture Poll 敏感信息泄露漏洞
CVE-2006-4652Amazing Little Picture Poll 'lp_admin.php'认证绕过漏洞

Showing top 20 of 22 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-4651

No comments yet


Leave a comment