Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-0371
Description:Directory traversal vulnerability in index.php in Noah Medling RCBlog 1.03 allows remote attackers to read arbitrary .txt files, possibly including one that stores the administrator's account name and password, via a .. (dot dot) in the post parameter.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-0371
BugTraq ID: 16342
http://www.securityfocus.com/bid/16342
Bugtraq: 20060120 [eVuln] RCBlog Directory Traversal & Sensitive Information Disclosure (Google Search)
http://www.securityfocus.com/archive/1/422499/100/0/threaded
Bugtraq: 20060218 RCblog exploit [fun] (Google Search)
http://www.securityfocus.com/archive/1/425392/100/0/threaded
Bugtraq: 20060611 RCblog 1.03 Directory Traversal [index.php] (Google Search)
http://www.securityfocus.com/archive/1/436784/30/4500/threaded
http://evuln.com/vulns/42/summary.html
http://www.fluffington.com/index.php?page=rcblog
http://www.osvdb.org/22680
http://securitytracker.com/id?1015523
http://secunia.com/advisories/18547
XForce ISS Database: rcblog-index-directory-traversal(24248)
https://exchange.xforce.ibmcloud.com/vulnerabilities/24248
XForce ISS Database: rcblog-index-file-include(27042)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27042




© 1998-2025 E-Soft Inc. All rights reserved.