关键漏洞信息 CVE Identifier: CVE-2006-4553 CVSS Base Score: CVSS v1.0 Base Score: 7 CVSS Metrics: Access Vector: Remote Access Complexity: Low Authentication: Not Required Confidentiality Impact: Partial Integrity Impact: Partial Availability Impact: Partial CVSS Temporal Score: 5.2 CVSS Temporal Metrics: Exploitability: Unproven Remediation Level: Official Fix Report Confidence: Confirmed Consequences: Gain Access Remedy: Upgrade to the latest version of comprofiler (1.0.1 or later), available from the comprofiler Web site. Affected Products: Mamboserver comprofiler component for Mambo 1.0 RC1 Joomla! comprofiler component for Joomla! 1.0 RC2 References: BID-19725 CVE-2006-4553 OSVDB ID: 28241 BugTraq Mailing List, Fri Aug 25 2006 - 22:47:35 CDT