CVE-2006-3362
Unrestricted file upload vulnerability in connectors/php/connector.php in FCKeditor mcpuk file manager, as used in (1) Geeklog 1.4.0 through 1.4.0sr3, (2) toendaCMS 1.0.0 Shizouka Stable and earlier, (3) WeBid 0.5.4, and possibly other products, when…
Does this matter?
Lower severity and a low EPSS score (5.06%). Track it; it rarely justifies an emergency change on its own.
Description
Unrestricted file upload vulnerability in connectors/php/connector.php in FCKeditor mcpuk file manager, as used in (1) Geeklog 1.4.0 through 1.4.0sr3, (2) toendaCMS 1.0.0 Shizouka Stable and earlier, (3) WeBid 0.5.4, and possibly other products, when installed on Apache with mod_mime, allows remote attackers to upload and execute arbitrary PHP code via a filename with a .php extension and a trailing extension that is allowed, such as .zip.
- CVSS 2.0
- 5.1 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
- EPSS
- 5.06% probability · 92th percentile
- CISA KEV
- Not listed
- Affected
- geeklog/geeklog · toenda software development/toendacms
- Source
- cve@mitre.org
References
- http://retrogod.altervista.org/toenda_100_shizouka_xpl.htmlExploit
- http://secunia.com/advisories/20886Patch, Vendor Advisory
- http://secunia.com/advisories/21117Vendor Advisory
- http://www.geeklog.net/article.php/exploit-for-fckeditor-filemanager
- http://www.geeklog.net/article.php/geeklog-1.4.0sr4
- http://www.securityfocus.com/archive/1/440423/100/0/threaded
- http://www.securityfocus.com/bid/18767Exploit
- http://www.securityfocus.com/bid/19072Exploit
- http://www.securityfocus.com/bid/30950
- http://www.vupen.com/english/advisories/2006/2611
- http://www.vupen.com/english/advisories/2006/2868
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27469
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27494
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27799
- https://www.exploit-db.com/exploits/1964
- https://www.exploit-db.com/exploits/2035
- https://www.exploit-db.com/exploits/6344
- http://retrogod.altervista.org/toenda_100_shizouka_xpl.htmlExploit
- http://secunia.com/advisories/20886Patch, Vendor Advisory
- http://secunia.com/advisories/21117Vendor Advisory
- http://www.geeklog.net/article.php/exploit-for-fckeditor-filemanager
- http://www.geeklog.net/article.php/geeklog-1.4.0sr4
- http://www.securityfocus.com/archive/1/440423/100/0/threaded
- http://www.securityfocus.com/bid/18767Exploit
- http://www.securityfocus.com/bid/19072Exploit
- http://www.securityfocus.com/bid/30950
- http://www.vupen.com/english/advisories/2006/2611
- http://www.vupen.com/english/advisories/2006/2868
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27469
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27494
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.