Unrated severityNVD Advisory· Published Apr 29, 2006· Updated Jun 16, 2026
CVE-2006-2105
CVE-2006-2105
Description
Directory traversal vulnerability in index.php in Jupiter CMS 1.1.4 and 1.1.5 allows remote attackers to read arbitrary files via ".." sequences terminated by a %00 (null) character in the n parameter.
Affected products
3cpe:2.3:a:jupiter_cms:jupiter_cms:1.1.4:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:jupiter_cms:jupiter_cms:1.1.4:*:*:*:*:*:*:*
- cpe:2.3:a:jupiter_cms:jupiter_cms:1.1.5:*:*:*:*:*:*:*
- (no CPE)range: <=1.1.5
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.