Unrated severityNVD Advisory· Published Mar 21, 2006· Updated Apr 16, 2026
CVE-2006-1340
CVE-2006-1340
Description
CuteNews 1.4.1 and possibly other versions allows remote attackers to obtain the installation path via unspecified vectors involving an invalid file path.
Affected products
7cpe:2.3:a:cutephp:cutenews:*:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:cutephp:cutenews:*:*:*:*:*:*:*:*range: <=1.4.1
- cpe:2.3:a:cutephp:cutenews:0.88:*:*:*:*:*:*:*
- cpe:2.3:a:cutephp:cutenews:1.3:*:*:*:*:*:*:*
- cpe:2.3:a:cutephp:cutenews:1.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:cutephp:cutenews:1.3.2:*:*:*:*:*:*:*
- cpe:2.3:a:cutephp:cutenews:1.3.6:*:*:*:*:*:*:*
- cpe:2.3:a:cutephp:cutenews:1.4.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- hamid.ir/security/cutenews.txtnvdExploit
- secunia.com/advisories/19289nvdExploitVendor Advisory
- www.securityfocus.com/bid/17152nvdExploit
- www.securityfocus.com/archive/1/428434/100/0/threadednvd
News mentions
0No linked articles in our index yet.