5
CVSSv2

CVE-2006-3836

Published: 25/07/2006 Updated: 17/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in index.php in UNIDOmedia Chameleon LE 1.203 and previous versions, and possibly Chameleon PRO, allows remote malicious users to read arbitrary files via the rmid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

unidomedia chameleon le

Exploits

source: wwwsecurityfocuscom/bid/19107/info Chameleon LE is prone to a directory-traversal vulnerability because it fails to properly sanitize user-supplied input An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the affected application Information obtained may aid in f ...