7.5
CVSSv2

CVE-2006-6175

Published: 30/11/2006 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in lib/FBView.php in Horde Kronolith H3 prior to 2.0.7 and 2.1.x prior to 2.1.4 allows remote malicious users to include arbitrary files and execute PHP code via a .. (dot dot) sequence in the view parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

horde kronolith 2.0.4

horde kronolith 2.0.5

horde kronolith 2.0.2

horde kronolith 2.0.3

horde kronolith 2.1.3

horde kronolith 2.0.6

horde kronolith 2.1

horde kronolith 2.0.1

horde kronolith 2.1.1

horde kronolith 2.1.2