CVE-2006-6257
N/A
N/A
Summary
The file manager in AlternC 0.9.5 and earlier, when warnings are enabled in PHP, allows remote attackers to obtain sensitive information via certain folder names such as ones composed of JavaScript code, which reveal the path in a warning message.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/archive/1/452988/100/0/threaded
- http://www.securityfocus.com/bid/21355
- http://securityreason.com/securityalert/1965
- http://www.ground418.org/exploits/read.php?file=06-alternC-095.txt
- http://secunia.com/advisories/23144
- http://www.vupen.com/english/advisories/2006/4851
References
- http://www.securityfocus.com/archive/1/452988/100/0/threaded
- http://www.securityfocus.com/bid/21355
- http://securityreason.com/securityalert/1965
- http://www.ground418.org/exploits/read.php?file=06-alternC-095.txt
- http://secunia.com/advisories/23144
- http://www.vupen.com/english/advisories/2006/4851
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.