VYPR
Unrated severityNVD Advisory· Published Feb 28, 2006· Updated Jun 16, 2026

CVE-2006-0921

CVE-2006-0921

Description

Multiple directory traversal vulnerabilities in connector.php in FCKeditor 2.0 FC, as used in products such as RunCMS, allow remote attackers to list and create arbitrary directories via a .. (dot dot) in the CurrentFolder parameter to (1) GetFoldersAndFiles and (2) CreateFolder.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:fckeditor:fckeditor:2.0_fc:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:fckeditor:fckeditor:2.0_fc:*:*:*:*:*:*:*
    • (no CPE)range: = 2.0 FC

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.