CVE-2006-0332
Severity CVSS v4.0:
Pending analysis
Type:
CWE-94
Code Injection
Publication date:
21/01/2006
Last modified:
03/04/2025
Description
Pantomime in Ecartis 1.0.0 snapshot 20050909 stores e-mail attachments in a publicly accessible directory, which may allow remote attackers to upload arbitrary files.
Impact
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:ecartis:ecartis:1.0.0_snapshot_2005-09-09:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://marc.info/?l=listar-dev&m=113732552708625&w=2
- http://marc.info/?l=listar-dev&m=113770802408358&w=2
- http://secunia.com/advisories/18524
- http://www.securityfocus.com/bid/16317
- http://www.vupen.com/english/advisories/2006/0260
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24220
- http://marc.info/?l=listar-dev&m=113732552708625&w=2
- http://marc.info/?l=listar-dev&m=113770802408358&w=2
- http://secunia.com/advisories/18524
- http://www.securityfocus.com/bid/16317
- http://www.vupen.com/english/advisories/2006/0260
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24220