Vulnerability Details CVE-2006-6938
Directory traversal vulnerability in includes/common.php in NitroTech 0.0.3a, as distributed before 2006, allows remote attackers to include arbitrary files via ".." sequences in the root parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.029
EPSS Ranking 85.0%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2006-6938
-
cpe:2.3:a:nitrotech:nitrotech:0.0.3a