CVE-2006-6330: Medium severity torrentflux torrentflux vulnerability
Published Dec 6, 2006
·Updated
index.php for TorrentFlux 2.2 allows remote registered users to execute arbitrary commands via shell metacharacters in the kill parameter.
Affected Software
1 affected component
TorrentFlux TorrentFlux=2.2
Remediation
Patch Available
Event History
Dec 6, 2006
CVE Published
09:28 PM
Data Sourced
via NVD·09:28 PM
RemedyDescriptionSeverityAffected Software
Dec 7, 2006
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-6330?
CVE-2006-6330 has a medium severity rating due to the potential for remote command execution.
2
How do I fix CVE-2006-6330?
To fix CVE-2006-6330, update TorrentFlux to a newer version that sanitizes input parameters.
3
Who is affected by CVE-2006-6330?
Users of TorrentFlux version 2.2 are affected by CVE-2006-6330.
4
What type of vulnerability is CVE-2006-6330?
CVE-2006-6330 is a command injection vulnerability.
5
Can CVE-2006-6330 be exploited remotely?
Yes, CVE-2006-6330 can be exploited remotely by registered users.