Logo
vulnerabilityCVE-2006-2658
Name
CVE-2006-2658
Source
NVD ( link)Debian ( link)
Description
Directory traversal vulnerability in the xsp component in mod_mono in Mono/C# web server, as used in SUSE Open-Enterprise-Server 1 and SUSE Linux 9.2 through 10.0, allows remote attackers to read arbitrary files via a .. (dot dot) sequence in an HTTP request.
CWEs
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
xsp
False Positive

Vulnerability Rating#


5
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
1.0.0-8
Not Affected
yocto
scarthgap
1.0.0-8
False Positive