Vulnerability Description
Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Andreas Gohr | Dokuwiki | <= release_2006-03-09 |
References
- http://bugs.splitbrain.org/?do=details&id=825Patch
- http://secunia.com/advisories/20478PatchVendor Advisory
- http://www.vupen.com/english/advisories/2006/2172Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27081
- http://bugs.splitbrain.org/?do=details&id=825Patch
- http://secunia.com/advisories/20478PatchVendor Advisory
- http://www.vupen.com/english/advisories/2006/2172Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27081
FAQ
What is CVE-2006-2945?
CVE-2006-2945 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack v...
How severe is CVE-2006-2945?
CVE-2006-2945 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-2945?
Check the references section above for vendor advisories and patch information. Affected products include: Andreas Gohr Dokuwiki.