CVE Vulnerabilities

CVE-2006-6604

Published: Dec 15, 2006 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the alias parameter, a different vector than CVE-2006-6328.

Affected Software

NameVendorStart VersionEnd Version
TorrentfluxTorrentflux2.2 (including)2.2 (including)
TorrentfluxUbuntudevel*
TorrentfluxUbuntuedgy*
TorrentfluxUbuntufeisty*
TorrentfluxUbuntugutsy*

References