PT-2006-5993 · Asbru+1 · Asbru Website Manager+3

Published

2006-10-12

·

Updated

2011-06-13

·

CVE-2006-5258

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Asbru Web Content Management versions prior to 6.1.22 Asbru Web Content Editor versions prior to 6.0.22 Asbru Website Manager versions prior to 6.0.22
Description The issue allows remote attackers to execute arbitrary commands due to a lack of sanitization in an unspecified parameter before invoking Aspell in the spell checking component.
Recommendations For Asbru Web Content Management versions prior to 6.1.22, update to version 6.1.22 or later. For Asbru Web Content Editor versions prior to 6.0.22, update to version 6.0.22 or later. For Asbru Website Manager versions prior to 6.0.22, update to version 6.0.22 or later.

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2006-5258

Affected Products

Asbru Web Content Editor
Asbru Web Content Management
Asbru Website Manager
Aspell