PT-2006-6941 · Torrentflux · Torrentflux
R0Ut3R
·
Published
2006-12-06
·
Updated
2017-10-19
·
CVE-2006-6329
CVSS v2.0
4.9
Medium
| Vector | AV:N/AC:M/Au:S/C:N/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
TorrentFlux version 2.2
Description
The issue allows remote attackers to delete files by specifying the target filename in the
delfile parameter in the index.php file.Recommendations
For TorrentFlux version 2.2, restrict access to the
delfile parameter in the index.php file to prevent unauthorized file deletion.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Torrentflux