CVE-2006-5786: High severity e107 e107 vulnerability
Directory traversal vulnerability in class2.php in e107 0.7.5 and earlier allows remote attackers to read and execute PHP code in arbitrary files via ".." sequences in the e107languagee107cookie cookie to gsitemap.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5786?
The severity of CVE-2006-5786 is considered to be medium, as it allows unauthorized access to arbitrary files.
How do I fix CVE-2006-5786?
To fix CVE-2006-5786, upgrade to e107 version 0.7.6 or later, which addresses this directory traversal vulnerability.
What types of attacks can exploit CVE-2006-5786?
CVE-2006-5786 can be exploited through directory traversal attacks, allowing attackers to access sensitive files on the server.
Is CVE-2006-5786 present in any other versions of e107?
Yes, CVE-2006-5786 affects e107 versions 0.7.5 and earlier.
What is the impact of CVE-2006-5786 on a website?
The impact of CVE-2006-5786 could lead to unauthorized access and potential execution of malicious code by an attacker.