Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-0508

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2006-0508
Last Modified 05 Sep 2008 04:59:27
Published 01 Feb 2006 06:02:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-0508

Summary

Easy CMS stores the images directory under the web document root with insufficient access control and browsing enabled, which allows remote attackers to list and possibly read images that are stored in that directory.

Vulnerable Systems

Application

  • Easy Cms


References

XF - easycms-insecure-directories(24373)

BUGTRAQ - 20060129 EasyCMS vulnerable to XSS injection.

SECUNIA - 18673

BUGTRAQ - 20060208 Re: Re: EasyCMS vulnerable to XSS injection.


Last Updated: 27 May 2016 10:41:40