Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2006-0044 | First vendor Publication | 2006-01-17 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P) | |||
---|---|---|---|
Cvss Base Score | 7.5 | Attack Range | Network |
Cvss Impact Score | 6.4 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Unspecified vulnerability in context.py in Albatross web application toolkit before 1.33 allows remote attackers to execute arbitrary commands via unspecified vectors involving template files and the "handling of submitted form fields". |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0044 |
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 6 |
OpenVAS Exploits
Date | Description |
---|---|
2008-01-17 | Name : Debian Security Advisory DSA 942-1 (albatross) File : nvt/deb_942_1.nasl |
2008-01-17 | Name : Debian Security Advisory DSA 949-1 (crawl) File : nvt/deb_949_1.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
22451 | Albatross Template Manipulation Arbitrary Command Execution Albatross contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to the application not properly sanitizing user input supplied for execution in a template. This may allow an attacker to insert arbitrary Python code which will be executed by the vulnerable script. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2006-10-14 | Name : The remote Debian host is missing a security-related update. File : debian_DSA-942.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:21:07 |
|
2024-11-28 12:08:09 |
|
2021-05-04 12:03:36 |
|
2021-04-22 01:04:04 |
|
2020-05-23 00:17:17 |
|
2017-07-20 09:23:16 |
|
2016-06-28 15:33:17 |
|
2016-04-26 14:10:59 |
|
2014-02-17 10:34:15 |
|
2013-05-11 10:46:15 |
|