CVE-2006-6598

Summary

CVECVE-2006-6598
StatePUBLIC
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2006-12-15 22:28:00 UTC
Updated2017-10-19 01:29:00 UTC
DescriptionDirectory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path parameter, a different vector than CVE-2006-6328.

Risk And Classification

Problem Types: NVD-CWE-Other

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Application Torrentflux Torrentflux All All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt3 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt4 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt5 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt6 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt61 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt7 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt8 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt801 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt802 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt81 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt82 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt83 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt84 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt85 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt9 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt91 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt92 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt93 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt94 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt95 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt951 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt952 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt953 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt96 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt97 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt3 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt4 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt5 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt6 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt61 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt7 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt8 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt801 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt802 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt81 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt82 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt83 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt84 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt85 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt9 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt91 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt92 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt93 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt94 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt95 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt951 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt952 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt953 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt96 All All All
Application Torrentflux Torrentflux-b4rt 2.1_b4rt97 All All All
Application Torrentflux Torrentflux-b4rt All All All All

References

ReferenceSourceLinkTags
Torrentflux-B4RT Viewnfo.PHP Directory Traversal Vulnerability BID www.securityfocus.com
Torrentflux-b4rt - Webbasierter Transfer Control Client CONFIRM tf-b4rt.berlios.de Exploit
torrentflux-b4rt "path" Directory Traversal Vulnerability - Advisories - Secunia SECUNIA secunia.com Vendor Advisory
TorrentFlux 2.2 (downloaddetails.php) Local File Disclosure Exploit EXPLOIT-DB www.exploit-db.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report