CVE-2006-6599 Information

Description

maketorrent.php in TorrentFlux 2.2 allows remote authenticated users to execute arbitrary commands via shell metacharacters (;\ semicolon) in the announce parameter.

Reference

http://secunia.com/advisories/23270 http://www.securityfocus.com/bid/21526 https://exchange.xforce.ibmcloud.com/vulnerabilities/30850 https://www.exploit-db.com/exploits/2903

Share on: