CVE Vulnerabilities

CVE-2006-4218

Published: Aug 17, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in Zen Cart 1.3.0.2 and earlier allows remote attackers to include and possibly execute arbitrary local files via directory traversal sequences in the typefilter parameter.

Affected Software

NameVendorStart VersionEnd Version
Zen_cartZen_cart1.2.0d (including)1.2.0d (including)
Zen_cartZen_cart1.2.1_patch1 (including)1.2.1_patch1 (including)
Zen_cartZen_cart1.2.1d (including)1.2.1d (including)
Zen_cartZen_cart1.2.2d (including)1.2.2d (including)
Zen_cartZen_cart1.2.3d (including)1.2.3d (including)
Zen_cartZen_cart1.2.4.1 (including)1.2.4.1 (including)
Zen_cartZen_cart1.2.4d (including)1.2.4d (including)
Zen_cartZen_cart1.2.5d (including)1.2.5d (including)
Zen_cartZen_cart1.2.6d (including)1.2.6d (including)
Zen_cartZen_cart1.3.0.2 (including)1.3.0.2 (including)

References