CVE-2006-4654

Easy Address Book Web Server 1.2 - DoS

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-4654. PoCs published by Revnic Vasile.

AI-analyzed exploit summary The exploit describes a format-string vulnerability in Easy Address Book Web Server 1.2, where unsanitized user input is passed to a formatted-printing function, potentially allowing remote code execution. The provided example URL demonstrates the vulnerability but lacks executable PoC code.

Description

Format string vulnerability in Easy Address Book Web Server 1.2 allows remote attackers to cause a denial of service (crash) or "compromise the server" via encoded format string specifiers in the query string.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Revnic Vasile · textremotewindows
https://www.exploit-db.com/exploits/28489

The exploit describes a format-string vulnerability in Easy Address Book Web Server 1.2, where unsanitized user input is passed to a formatted-printing function, potentially allowing remote code execution. The provided example URL demonstrates the vulnerability but lacks executable PoC code.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Theoretical
Target: Easy Address Book Web Server 1.2
No auth needed
Prerequisites: Network access to the target server · Vulnerable version of Easy Address Book Web Server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/1529
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/19842
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/28752
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/445262/100/0/threaded
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/21959

Scores

EPSS 0.0207
EPSS Percentile 79.0%

Details

Status published
Products (1)
efs_software/easy_address_book_web_server 1.2
Published Sep 09, 2006
Tracked Since Feb 18, 2026