CVE-2006-2658: Medium severity suse suse open enterprise server vulnerability
Directory traversal vulnerability in the xsp component in modmono in Mono/C# web server, as used in SUSE Open-Enterprise-Server 1 and SUSE Linux 9.2 through 10.0, allows remote attackers to read arbitrary files via a .. (dot dot) sequence in an HTTP request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-2658?
CVE-2006-2658 is classified as a medium severity vulnerability which allows remote attackers to read arbitrary files from the server.
How do I fix CVE-2006-2658?
To fix CVE-2006-2658, you should update the affected version of Mono Xsp or apply a security patch provided by SUSE.
What components are affected by CVE-2006-2658?
The vulnerability CVE-2006-2658 specifically affects the xsp component of the mod_mono in the Mono/C# web server.
Which versions of SUSE are impacted by CVE-2006-2658?
SUSE Open Enterprise Server 1 and SUSE Linux versions 9.2 through 10.1 are impacted by CVE-2006-2658.
What type of vulnerability is CVE-2006-2658?
CVE-2006-2658 is a directory traversal vulnerability that allows exploitation through HTTP requests.