5
CVSSv2

CVE-2006-5098

Published: 29/09/2006 Updated: 08/03/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

lib/exec/fetch.php in DokuWiki prior to 2006-03-09e allows remote malicious users to cause a denial of service (CPU consumption) via large w and h parameters, when resizing an image.

Vulnerable Product Search on Vulmon Subscribe to Product

andreas gohr dokuwiki release 2006-03-09

andreas gohr dokuwiki release 2006-03-09e

andreas gohr dokuwiki release 2006-03-05

Vendor Advisories

Debian Bug report logs - #391291 CVE-2006-509[89]: DokuWiki 2006-03-09e fixes security issues Package: dokuwiki; Maintainer for dokuwiki is Tanguy Ortolo <tanguy+debian@ortoloeu>; Source for dokuwiki is src:dokuwiki (PTS, buildd, popcon) Reported by: Stefan Fritsch <sf@sfritschde> Date: Thu, 5 Oct 2006 21:04:05 UT ...