VulnerabilityModified
CVE-2006-2945
Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.
MEDIUM 4.0EPSS 1.14%
Does this matter?
Lower severity and a low EPSS score (1.14%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
- EPSS
- 1.14% probability · 65th percentile
- CISA KEV
- Not listed
- Affected
- andreas gohr/dokuwiki
- Source
- cve@mitre.org
References
- http://bugs.splitbrain.org/?do=details&id=825Patch
- http://secunia.com/advisories/20478Patch, Vendor Advisory
- http://www.vupen.com/english/advisories/2006/2172Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27081
- http://bugs.splitbrain.org/?do=details&id=825Patch
- http://secunia.com/advisories/20478Patch, Vendor Advisory
- http://www.vupen.com/english/advisories/2006/2172Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27081
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.