PT-2006-6941 · Torrentflux · Torrentflux

R0Ut3R

·

Published

2006-12-06

·

Updated

2017-10-19

·

CVE-2006-6329

CVSS v2.0

4.9

Medium

VectorAV:N/AC:M/Au:S/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions TorrentFlux version 2.2
Description The issue allows remote attackers to delete files by specifying the target filename in the delfile parameter in the index.php file.
Recommendations For TorrentFlux version 2.2, restrict access to the delfile parameter in the index.php file to prevent unauthorized file deletion.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-6329

Affected Products

Torrentflux