Vulnerability Details CVE-2006-4679
DokuWiki before 2006-03-09c enables the debug feature by default, which allows remote attackers to obtain sensitive information by calling doku.php with the X-DOKUWIKI-DO HTTP header set to "debug".
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.5%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2006-4679
-
cpe:2.3:a:andreas_gohr:dokuwiki:*
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-07-04
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-07-07
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-07-12
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-07-21
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-07-25
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-08-08
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-08-15a
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-08-22
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-09-12
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-09-25
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-09-30
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-10-19
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-11-01
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-11-02
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2004-11-10
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-01-14
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-01-15
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-01-16a
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-02-06
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-02-18
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-05-07
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-07-01
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-07-13
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-09-19
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2005-09-22
-
cpe:2.3:a:andreas_gohr:dokuwiki:release_2006-03-05