Unrated severityNVD Advisory· Published May 3, 2006· Updated Apr 16, 2026
CVE-2006-2156
CVE-2006-2156
Description
Directory traversal vulnerability in help/index.php in X7 Chat 2.0 and earlier allows remote attackers to include arbitrary files via .. (dot dot) sequences in the help_file parameter.
Affected products
6cpe:2.3:a:x7_group:x7_chat:1.3.2b:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:x7_group:x7_chat:1.3.2b:*:*:*:*:*:*:*
- cpe:2.3:a:x7_group:x7_chat:1.3.3b:*:*:*:*:*:*:*
- cpe:2.3:a:x7_group:x7_chat:1.3.4b:*:*:*:*:*:*:*
- cpe:2.3:a:x7_group:x7_chat:1.3.5b:*:*:*:*:*:*:*
- cpe:2.3:a:x7_group:x7_chat:1.3.6:*:*:*:*:*:*:*
- cpe:2.3:a:x7_group:x7_chat:2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.securityfocus.com/bid/17777nvdExploit
- secunia.com/advisories/19886nvdVendor Advisory
- securityreason.com/securityalert/829nvd
- www.osvdb.org/25149nvd
- www.securityfocus.com/archive/1/432716/100/0/threadednvd
- www.vupen.com/english/advisories/2006/1608nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26218nvd
- www.exploit-db.com/exploits/1738nvd
News mentions
0No linked articles in our index yet.