CVE-2006-4675: High severity Andreas Gohr Dokuwiki vulnerability
Unrestricted file upload vulnerability in lib/exe/media.php in DokuWiki before 2006-03-09c allows remote attackers to upload executable files into the data/media folder via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4675?
CVE-2006-4675 is classified as a high severity vulnerability due to its potential for remote code execution through unrestricted file uploads.
How do I fix CVE-2006-4675?
To fix CVE-2006-4675, you should upgrade DokuWiki to version 2006-03-09 or later, which addresses this vulnerability.
What versions of DokuWiki are affected by CVE-2006-4675?
CVE-2006-4675 affects all DokuWiki versions released before 2006-03-09.
What are the risks associated with CVE-2006-4675?
The primary risk associated with CVE-2006-4675 is that attackers can upload malicious executable files, potentially leading to complete server compromise.
How does CVE-2006-4675 exploit the DokuWiki software?
CVE-2006-4675 exploits DokuWiki by allowing unauthorized file uploads to the data/media directory, where malicious files can be executed.