VYPR
Unrated severityNVD Advisory· Published Feb 28, 2006· Updated Jun 16, 2026

CVE-2006-0921

CVE-2006-0921

Description

Multiple directory traversal vulnerabilities in connector.php in FCKeditor 2.0 FC, as used in products such as RunCMS, allow remote attackers to list and create arbitrary directories via a .. (dot dot) in the CurrentFolder parameter to (1) GetFoldersAndFiles and (2) CreateFolder.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Fckeditor/Fckeditorllm-fuzzy2 versions
    = 2.0 FC+ 1 more
    • (no CPE)range: = 2.0 FC
    • cpe:2.3:a:fckeditor:fckeditor:2.0_fc:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.