CVE-2006-6598: Medium severity torrentflux torrentflux-b4rt vulnerability
Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path parameter, a different vector than CVE-2006-6328.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6598?
CVE-2006-6598 is classified as a moderate severity vulnerability due to its potential to allow remote authenticated users to read arbitrary files.
How do I fix CVE-2006-6598?
To mitigate CVE-2006-6598, upgrade to TorrentFlux version 2.2 or later or apply any available security patches.
Who is affected by CVE-2006-6598?
CVE-2006-6598 affects versions of TorrentFlux prior to 2.2 and certain versions of torrentflux-b4rt before 2.1-b4rt-972.
What type of vulnerability is CVE-2006-6598?
CVE-2006-6598 is a directory traversal vulnerability that can lead to unauthorized file access.
Can CVE-2006-6598 be exploited remotely?
Yes, CVE-2006-6598 can be exploited remotely by authenticated users who can manipulate the path parameter.