Vulnerability Description
Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to bypass authentication and upload arbitrary files via direct requests to (1) adm/photos/images.php and (2) adm/down/files.php.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rigter Portal System | Rigter Portal System | 1.0 |
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048006.htmlExploit
- http://securityreason.com/securityalert/2322
- http://www.osvdb.org/28637
- http://www.osvdb.org/28638
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27873
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-July/048006.htmlExploit
- http://securityreason.com/securityalert/2322
- http://www.osvdb.org/28637
- http://www.osvdb.org/28638
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27873
FAQ
What is CVE-2006-7082?
CVE-2006-7082 is a vulnerability with a CVSS score of 7.5 (HIGH). Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to bypass authentication and upload arbitrary files via direct requests to (1) adm/photos/images.php and (2) adm/down/files.php.
How severe is CVE-2006-7082?
CVE-2006-7082 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-7082?
Check the references section above for vendor advisories and patch information. Affected products include: Rigter Portal System Rigter Portal System.