mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 09:11:28 +00:00
166 lines
5.8 KiB
JSON
166 lines
5.8 KiB
JSON
{
|
|
"id": "CVE-2006-5706",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2006-11-04T01:07:00.000",
|
|
"lastModified": "2018-10-30T16:25:35.747",
|
|
"vulnStatus": "Analyzed",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Unspecified vulnerabilities in PHP, probably before 5.2.0, allow local users to bypass open_basedir restrictions and perform unspecified actions via unspecified vectors involving the (1) chdir and (2) tempnam functions. NOTE: the tempnam vector might overlap CVE-2006-1494."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Vulnerabilidades no especificada en PHP, probablemente anterior a 5.2.0, permite a un usuario local evitar las restricciones open_basedir y llevar a cabo acciones no espec\u00edficas a trav\u00e9s de vectores no especificados que afectan a (1)chdir y (2)funciones tempnam. NOTA: el vector tempnam podr\u00eda solaparse con CVE-2006-1494."
|
|
}
|
|
],
|
|
"vendorComments": [
|
|
{
|
|
"organization": "Red Hat",
|
|
"comment": "We do not consider these to be security issues. For more details see http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=169857#c1\nand http://www.php.net/security-note.php\n",
|
|
"lastModified": "2006-11-10T00:00:00"
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C",
|
|
"accessVector": "LOCAL",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "COMPLETE",
|
|
"integrityImpact": "COMPLETE",
|
|
"availabilityImpact": "COMPLETE",
|
|
"baseScore": 7.2
|
|
},
|
|
"baseSeverity": "HIGH",
|
|
"exploitabilityScore": 3.9,
|
|
"impactScore": 10.0,
|
|
"acInsufInfo": true,
|
|
"obtainAllPrivilege": true,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "NVD-CWE-noinfo"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:*:*:*:*:*:*:*:*",
|
|
"versionEndIncluding": "5.1.6",
|
|
"matchCriteriaId": "1C85C56B-D27F-433F-A268-34463619B183"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0:rc1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0F9D7662-A5B6-41D0-B6A1-E5ABC5ABA47F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0:rc2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E3797AB5-9E49-4251-A212-B6E5D9996764"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0:rc3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D61D9CE9-F7A3-4F52-9D4E-B2473804ECB7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7007E77F-60EF-44D8-9676-15B59DF1325F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "17437AED-816A-4CCF-96DE-8C3D0CC8DB2B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "74E7AE59-1CB0-4300-BBE0-109F909789EF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9222821E-370F-4616-B787-CC22C2F4E7CD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9809449F-9A76-4318-B233-B4C2950A6EA9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.0.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0AA962D4-A4EC-4DC3-B8A9-D10941B92781"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F8CDFEF9-C367-4800-8A2F-375C261FAE55"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.1.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "16E43B88-1563-4EFD-9267-AE3E8C35D67A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.1.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "11E5715F-A8BC-49EF-836B-BB78E1BC0790"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.1.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5FA68843-158E-463E-B68A-1ACF041C4E10"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.1.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1874F637-77E2-4C4A-BF92-AEE96A60BFB0"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:php:php:5.1.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9592B32E-55CD-42D0-901E-8319823BC820"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://www.php.net/releases/5_2_0.php",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.ubuntu.com/usn/usn-375-1",
|
|
"source": "cve@mitre.org"
|
|
}
|
|
]
|
|
} |