CVE-2006-1387
N/A
N/A
Summary
TWiki 4.0, 4.0.1, and 20010901 through 20040904 allows remote authenticated users with edit rights to cause a denial of service (infinite recursion leading to CPU and memory consumption) via INCLUDE by URL statements that form a loop, such as a page that includes itself.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://secunia.com/advisories/19410
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25445
- http://twiki.org/cgi-bin/view/Codev/SecurityAdvisoryDosAttackWithInclude
- http://www.vupen.com/english/advisories/2006/1116
- http://www.securityfocus.com/bid/17267
References
- http://secunia.com/advisories/19410
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25445
- http://twiki.org/cgi-bin/view/Codev/SecurityAdvisoryDosAttackWithInclude
- http://www.vupen.com/english/advisories/2006/1116
- http://www.securityfocus.com/bid/17267
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.