MEDIUM · 5.0

CVE-2006-5896

REMLAB Web Mech Designer 2.0.5 allows remote attackers to obtain the full path of the script via an incorrect Tonnage parameter to calculate.php that triggers a divide-by-zero error, which leaks the p...

Vulnerability Description

REMLAB Web Mech Designer 2.0.5 allows remote attackers to obtain the full path of the script via an incorrect Tonnage parameter to calculate.php that triggers a divide-by-zero error, which leaks the path in an error message.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
RemlabWeb Mech Designer2.0.5

References

FAQ

What is CVE-2006-5896?

CVE-2006-5896 is a vulnerability with a CVSS score of 5.0 (MEDIUM). REMLAB Web Mech Designer 2.0.5 allows remote attackers to obtain the full path of the script via an incorrect Tonnage parameter to calculate.php that triggers a divide-by-zero error, which leaks the p...

How severe is CVE-2006-5896?

CVE-2006-5896 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-5896?

Check the references section above for vendor advisories and patch information. Affected products include: Remlab Web Mech Designer.