CVE-2006-0873: Path Traversal
Absolute path traversal vulnerability in docs/showdocs.php in Coppermine Photo Gallery 1.4.3 and earlier allows remote attackers to include arbitrary files via the f parameter, and possibly remote files using UNC share pathnames.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0873?
CVE-2006-0873 is considered a high-severity vulnerability due to its potential to allow remote file inclusion.
How do I fix CVE-2006-0873?
To fix CVE-2006-0873, upgrade Coppermine Photo Gallery to version 1.4.4 or later, which addresses this vulnerability.
What are the potential impacts of CVE-2006-0873?
The impact of CVE-2006-0873 includes unauthorized access to sensitive files on the server and possible execution of arbitrary code.
Who is affected by CVE-2006-0873?
CVE-2006-0873 affects users of Coppermine Photo Gallery versions 1.4.3 and earlier.
How can attackers exploit CVE-2006-0873?
Attackers can exploit CVE-2006-0873 by manipulating the 'f' parameter in requests to include arbitrary files on the server.