CVE

CVE-2006-6604

Severity:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/12/2006
Last modified:
19/10/2017

Description

Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the alias parameter, a different vector than CVE-2006-6328.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:torrentflux:torrentflux:2.2:*:*:*:*:*:*:*