CVE-2006-2326
Last modified
CVE-2006-2326 is a vulnerability of currently unknown severity. Directory traversal vulnerability in index.php in OnlyScript.info Online Universal Payment System Script allows remote attackers to read arbitrary files via directory traversal sequences in the read parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.. EPSS estimates a 1.65% chance of exploitation in the next 30 days.
Description
Directory traversal vulnerability in index.php in OnlyScript.info Online Universal Payment System Script allows remote attackers to read arbitrary files via directory traversal sequences in the read parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Onlyscript.Info | Online Universal Payment System Script | All versions |
References
- http://secunia.com/advisories/20005Vendor Advisory
- http://secunia.com/advisories/20005Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-2326?
How severe is CVE-2006-2326?
How do I fix CVE-2006-2326?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-2320Multiple SQL injection vulnerabilities in Ideal Science Idea…
- CVE-2006-2321Multiple cross-site scripting (XSS) vulnerabilities in Ideal…
- CVE-2006-2322The transparent proxy feature of the Cisco Application Veloc…
- CVE-2006-2323Multiple PHP remote file inclusion vulnerabilities in SmartI…
- CVE-2006-2324180solutions Zango downloads "required Adware components" wi…
- CVE-2006-2325Cross-site scripting (XSS) vulnerability in index.php in Onl…
- CVE-2006-2327Multiple integer overflows in the DPRPC library (DPRPCNLM.NL…
- CVE-2006-2328SQL injection vulnerability in lib/adodb/server.php in Angel…
- CVE-2006-2329AngelineCMS 0.6.5 and earlier allow remote attackers to obta…
- CVE-2006-2330PHP-Fusion 6.00.306 and earlier, running under Apache HTTP S…
- CVE-2006-2331Multiple directory traversal vulnerabilities in PHP-Fusion 6…
- CVE-2006-2332Mozilla Firefox 1.5.0.3 allows remote attackers to cause a d…
Are you affected by CVE-2006-2326?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
