Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2006-4651
Directory traversal vulnerability in download/index.php, and possibly download.php, in threesquared.net (aka Ben Speakman) Php download allows remote attackers to overwrite arbitrary local files via .. (dot dot) sequence in the file parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.011
EPSS Ranking
77.5%
CVSS Severity
CVSS v2 Score
5.0
References
http://secunia.com/advisories/21774
http://securityreason.com/securityalert/1528
http://www.securityfocus.com/archive/1/445269/100/0/threaded
http://www.securityfocus.com/bid/19872
http://www.vupen.com/english/advisories/2006/3479
https://exchange.xforce.ibmcloud.com/vulnerabilities/28751
http://secunia.com/advisories/21774
http://securityreason.com/securityalert/1528
http://www.securityfocus.com/archive/1/445269/100/0/threaded
http://www.securityfocus.com/bid/19872
http://www.vupen.com/english/advisories/2006/3479
https://exchange.xforce.ibmcloud.com/vulnerabilities/28751
Products affected by CVE-2006-4651
Threesquared.net
»
Php Download Script
»
Version:
Any
cpe:2.3:a:threesquared.net:php_download_script:*
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved