6.4
CVSSv2

CVE-2006-1073

Published: 08/03/2006 Updated: 14/02/2024
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and previous versions allows remote malicious users to include or read arbitrary .txt files via the (1) act and (2) blogid parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

simplog simplog

Exploits

source: wwwsecurityfocuscom/bid/16965/info Simplog is prone to an information-disclosure vulnerability The application fails to properly sanitize user-supplied input Attackers may exploit this issue to gain access to potentially sensitive information, aiding them in further attacks Simplog version 102 is vulnerable to these issues; ...