CVE-2006-2945
published 2006-06-12CVE-2006-2945: Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to…
PriorityP413medium4CVSS 2.0
AVNACLAuSCPINAN
EPSS
1.14%
63.0th percentile
Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.
Affected
32 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| andreas_gohr | dokuwiki | <= release_2006-03-09 | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
| andreas_gohr | dokuwiki | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
osv4.0MEDIUM
vendor_debian4.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2006-2945: dokuwiki - Unspecified vulnerability in the user profile change functionality in DokuWiki, ...
vendor_debian·2006·CVSS 4.0
CVE-2006-2945 [MEDIUM] CVE-2006-2945: dokuwiki - Unspecified vulnerability in the user profile change functionality in DokuWiki, ...
Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.
Scope: local
bookworm: resolved (fixed in 0.0.20060309-4)
bullseye: resolved (fixed in 0.0.20060309-4)
forky: resolved (fixed in 0.0.20060309-4)
sid: resolved (fixed in 0.0.20060309-4)
trixie: resolved (fixed in 0.0.20060309-4)
GHSA
GHSA-qxv2-58jf-jpc7: Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated use
ghsa_unreviewed·2022-05-01
CVE-2006-2945 [MEDIUM] GHSA-qxv2-58jf-jpc7: Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated use
Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.
OSV
CVE-2006-2945: Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated use
osv·2006-06-12·CVSS 4.0
CVE-2006-2945 [MEDIUM] CVE-2006-2945: Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated use
Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors.
Suricata
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UPDATE
suricata·2010-07-30·CVSS 7.5
CVE-2006-6716 [HIGH] ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UPDATE
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UPDATE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UPDATE"; flow:established,to_server; http.uri; content:"/administration/administre2.php?"; nocase; content:"id_user="; nocase; content:"UPDATE"; nocase; content:"SET"; nocase; distance:0; reference:cve,CVE-2006-6716; reference:url,www.milw0rm.com/exploits/2945; classtype:web-application-attack; sid:2006224; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_0
Suricata
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user INSERT
suricata·2010-07-30·CVSS 7.5
CVE-2006-6716 [HIGH] ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user INSERT
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user INSERT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user INSERT"; flow:established,to_server; http.uri; content:"/administration/administre2.php?"; nocase; content:"id_user="; nocase; content:"INSERT"; nocase; content:"INTO"; nocase; distance:0; reference:cve,CVE-2006-6716; reference:url,www.milw0rm.com/exploits/2945; classtype:web-application-attack; sid:2006221; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_
Suricata
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user SELECT
suricata·2010-07-30·CVSS 7.5
CVE-2006-6716 [HIGH] ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user SELECT
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user SELECT"; flow:established,to_server; http.uri; content:"/administration/administre2.php?"; nocase; content:"id_user="; nocase; content:"SELECT"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2006-6716; reference:url,www.milw0rm.com/exploits/2945; classtype:web-application-attack; sid:2006219; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_
Suricata
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UNION SELECT
suricata·2010-07-30·CVSS 7.5
CVE-2006-6716 [HIGH] ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UNION SELECT
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UNION SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user UNION SELECT"; flow:established,to_server; http.uri; content:"/administration/administre2.php?"; nocase; content:"id_user="; nocase; content:"UNION"; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2006-6716; reference:url,www.milw0rm.com/exploits/2945; classtype:web-application-attack; sid:2006220; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, upd
Suricata
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user DELETE
suricata·2010-07-30·CVSS 7.5
CVE-2006-6716 [HIGH] ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user DELETE
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user DELETE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user DELETE"; flow:established,to_server; http.uri; content:"/administration/administre2.php?"; nocase; content:"id_user="; nocase; content:"DELETE"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2006-6716; reference:url,www.milw0rm.com/exploits/2945; classtype:web-application-attack; sid:2006222; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_
Suricata
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user ASCII
suricata·2010-07-30·CVSS 7.5
CVE-2006-6716 [HIGH] ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user ASCII
ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user ASCII
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Eric GUILLAUME uploader&downloader SQL Injection Attempt -- administre2.php id_user ASCII"; flow:established,to_server; http.uri; content:"/administration/administre2.php?"; nocase; content:"id_user="; nocase; content:"ASCII("; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2006-6716; reference:url,www.milw0rm.com/exploits/2945; classtype:web-application-attack; sid:2006223; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_
No public exploits indexed.
No writeups or analysis indexed.
http://bugs.splitbrain.org/?do=details&id=825http://secunia.com/advisories/20478http://www.vupen.com/english/advisories/2006/2172https://exchange.xforce.ibmcloud.com/vulnerabilities/27081http://bugs.splitbrain.org/?do=details&id=825http://secunia.com/advisories/20478http://www.vupen.com/english/advisories/2006/2172https://exchange.xforce.ibmcloud.com/vulnerabilities/27081
2006-06-12
Published