CVE-2006-4675: High severity Andreas Gohr Dokuwiki vulnerability

Published Sep 11, 2006
·
Updated

Unrestricted file upload vulnerability in lib/exe/media.php in DokuWiki before 2006-03-09c allows remote attackers to upload executable files into the data/media folder via unspecified vectors.

Affected Software

27 affected components
Andreas Gohr Dokuwiki<=release_2006-03-09
Andreas Gohr Dokuwiki=release_2004-07-04
Andreas Gohr Dokuwiki=release_2004-07-07
Andreas Gohr Dokuwiki=release_2004-07-12
Andreas Gohr Dokuwiki=release_2004-07-21
Andreas Gohr Dokuwiki=release_2004-07-25
Andreas Gohr Dokuwiki=release_2004-08-08
Andreas Gohr Dokuwiki=release_2004-08-15a
Andreas Gohr Dokuwiki=release_2004-08-22
Andreas Gohr Dokuwiki=release_2004-09-12
Andreas Gohr Dokuwiki=release_2004-09-25
Andreas Gohr Dokuwiki=release_2004-09-30
Andreas Gohr Dokuwiki=release_2004-10-19
Andreas Gohr Dokuwiki=release_2004-11-01
Andreas Gohr Dokuwiki=release_2004-11-02
Andreas Gohr Dokuwiki=release_2004-11-10
Andreas Gohr Dokuwiki=release_2005-01-14
Andreas Gohr Dokuwiki=release_2005-01-15
Andreas Gohr Dokuwiki=release_2005-01-16a
Andreas Gohr Dokuwiki=release_2005-02-06
Andreas Gohr Dokuwiki=release_2005-02-18
Andreas Gohr Dokuwiki=release_2005-05-07
Andreas Gohr Dokuwiki=release_2005-07-01
Andreas Gohr Dokuwiki=release_2005-07-13
Andreas Gohr Dokuwiki=release_2005-09-19
Andreas Gohr Dokuwiki=release_2005-09-22
Andreas Gohr Dokuwiki=release_2006-03-05

Remediation

Event History

Sep 11, 2006
CVE Published
05:04 PM
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2006-4675?

CVE-2006-4675 is classified as a high severity vulnerability due to its potential for remote code execution through unrestricted file uploads.

2

How do I fix CVE-2006-4675?

To fix CVE-2006-4675, you should upgrade DokuWiki to version 2006-03-09 or later, which addresses this vulnerability.

3

What versions of DokuWiki are affected by CVE-2006-4675?

CVE-2006-4675 affects all DokuWiki versions released before 2006-03-09.

4

What are the risks associated with CVE-2006-4675?

The primary risk associated with CVE-2006-4675 is that attackers can upload malicious executable files, potentially leading to complete server compromise.

5

How does CVE-2006-4675 exploit the DokuWiki software?

CVE-2006-4675 exploits DokuWiki by allowing unauthorized file uploads to the data/media directory, where malicious files can be executed.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203