6
CVSSv2

CVE-2006-6331

Published: 06/12/2006 Updated: 07/11/2023
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote malicious users to execute arbitrary commands via shell metacharacters (backticks) in the torrent parameter to (1) details.php and (2) startpop.php.

Vulnerable Product Search on Vulmon Subscribe to Product

torrentflux torrentflux 2.2