CVE-2006-3392
60Vexday Risk Score
Corrija em breve. Ela tem exploit funcional público.
ssvc Attendepss 78%
da publicação à arma3 dias
Publicada no NVD6 de jul.
1ª PoC+3d
metasploit30 de jun.
probabilidade de exploração
78%top 1% das CVEs
exploração observada
nãonenhuma fonte reporta
10 exploit(s) público(s)
Webmin before 1.290 and Usermin before 1.220 calls the simplify_path function before decoding HTML, which allows remote attackers to read arbitrary files, as demonstrated using "..%01" sequences, which bypass the removal of "../" sequences before bytes such as "%01" are removed from the filename. NOTE: This is a different issue than CVE-2006-3274.
Produtos afetados
n/a · n/aPoCs públicas encontradas — 10✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/2017exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/1997githubgithub.com/IvanGlinkin/CVE-2006-3392★ 14githubgithub.com/brosck/CVE-2006-3392★ 3githubgithub.com/0xtz/CVE-2006-3392★ 1githubgithub.com/g1vi/CVE-2006-3392★ 1githubgithub.com/Adel-kaka-dz/CVE-2006-3392★ 0githubgithub.com/gb21oc/ExploitWebmin★ 0githubgithub.com/Adel-hx0d/CVE-2006-3392★ 0githubgithub.com/kernel-cyber/CVE-2006-3392★ 0⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.
Referências
http://attrition.org/pipermail/vim/2006-July/000923.htmlhttp://attrition.org/pipermail/vim/2006-June/000912.htmlhttp://secunia.com/advisories/20892http://secunia.com/advisories/21105http://secunia.com/advisories/21365http://secunia.com/advisories/22556http://security.gentoo.org/glsa/glsa-200608-11.xmlhttp://www.debian.org/security/2006/dsa-1199http://www.kb.cert.org/vuls/id/999601http://www.mandriva.com/security/advisories?name=MDKSA-2006:125http://www.osvdb.org/26772http://www.securityfocus.com/archive/1/439653/100/0/threaded