CVE-2006-6047
Etomite - Path Traversal
Title source: ruleDescription
Directory traversal vulnerability in manager/index.php in Etomite 0.6.1.2 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the f parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by index.php.
Exploits (1)
References (9)
Scores
EPSS
0.1721
EPSS Percentile
95.0%
Details
CWE
CWE-22
Status
published
Products (1)
etomite/etomite
0.6.1.2
Published
Nov 22, 2006
Tracked Since
Feb 18, 2026