4
CVSSv2

CVE-2006-2945

Published: 12/06/2006 Updated: 20/07/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

andreas gohr dokuwiki release_2004-08-08

andreas gohr dokuwiki release_2004-08-15a

andreas gohr dokuwiki release_2004-11-02

andreas gohr dokuwiki release_2004-11-10

andreas gohr dokuwiki release_2005-07-13

andreas gohr dokuwiki release_2005-09-19

andreas gohr dokuwiki release_2004-07-07

andreas gohr dokuwiki release_2004-07-12

andreas gohr dokuwiki release_2004-09-25

andreas gohr dokuwiki release_2004-09-30

andreas gohr dokuwiki release_2005-01-16a

andreas gohr dokuwiki release_2005-02-06

andreas gohr dokuwiki release_2005-02-18

andreas gohr dokuwiki

andreas gohr dokuwiki release_2004-07-04

andreas gohr dokuwiki release_2004-08-22

andreas gohr dokuwiki release_2004-09-12

andreas gohr dokuwiki release_2005-01-14

andreas gohr dokuwiki release_2005-01-15

andreas gohr dokuwiki release_2005-09-22

andreas gohr dokuwiki release_2006-03-05

andreas gohr dokuwiki release_2004-07-21

andreas gohr dokuwiki release_2004-07-25

andreas gohr dokuwiki release_2004-10-19

andreas gohr dokuwiki release_2004-11-01

andreas gohr dokuwiki release_2005-05-07

andreas gohr dokuwiki release_2005-07-01

Vendor Advisories

Debian Bug report logs - #373689 dokuwiki: CVE-2006-2945: remote authenticated users read unauthorized files Package: dokuwiki; Maintainer for dokuwiki is Tanguy Ortolo <tanguy+debian@ortoloeu>; Source for dokuwiki is src:dokuwiki (PTS, buildd, popcon) Reported by: Alec Berryman <alec@thenednet> Date: Thu, 15 Jun 2 ...