Search CVE reports


Toggle filters

461 – 470 of 497 results


CVE-2007-1103

Low priority
Ignored

Tor does not verify a node's uptime and bandwidth advertisements, which allows remote attackers who operate a low resource node to make false claims of greater resources, which places the node into use for many circuits and...

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2006-6604

Medium priority
Fixed

Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the alias parameter, a different vector than CVE-2006-6328.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-6600

Medium priority
Fixed

Cross-site scripting (XSS) vulnerability in dir.php in TorrentFlux 2.2, when allows remote attackers to inject arbitrary web script or HTML via double URL-encoded strings in the dir parameter, a related issue to CVE-2006-5609.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-6599

Medium priority
Fixed

maketorrent.php in TorrentFlux 2.2 allows remote authenticated users to execute arbitrary commands via shell metacharacters (";" semicolon) in the announce parameter.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-6598

Medium priority
Fixed

Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path...

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-6331

Medium priority
Fixed

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary commands via shell metacharacters (backticks) in the torrent parameter to (1) details.php and (2) startpop.php.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-6330

Medium priority
Fixed

index.php for TorrentFlux 2.2 allows remote registered users to execute arbitrary commands via shell metacharacters in the kill parameter.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-6329

Medium priority
Fixed

index.php for TorrentFlux 2.2 allows remote attackers to delete files by specifying the target filename in the delfile parameter.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-6328

Medium priority
Ignored

Directory traversal vulnerability in index.php for TorrentFlux 2.2 allows remote attackers to create or overwrite arbitrary files via sequences in the alias_file parameter.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages

CVE-2006-5609

Medium priority
Fixed

Directory traversal vulnerability in dir.php in TorrentFlux 2.1 allows remote attackers to list arbitrary directories via "\.\./" sequences in the dir parameter.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages