Unrated severityNVD Advisory· Published May 19, 2006· Updated Apr 16, 2026
CVE-2006-2312
CVE-2006-2312
Description
Argument injection vulnerability in the URI handler in Skype 2.0.*.104 and 2.5.*.0 through 2.5.*.78 for Windows allows remote authorized attackers to download arbitrary files via a URL that contains certain command-line switches.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- secunia.com/advisories/20154nvdBroken LinkVendor Advisory
- www.kb.cert.org/vuls/id/466428nvdThird Party AdvisoryUS Government Resource
- www.securityfocus.com/archive/1/434707/30/4860/threadednvdBroken LinkThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/18038nvdBroken LinkThird Party AdvisoryVDB Entry
- www.vupen.com/english/advisories/2006/1871nvdBroken LinkVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/26557nvdThird Party AdvisoryVDB Entry
- archives.neohapsis.com/archives/fulldisclosure/2006-05/0549.htmlnvdBroken Link
- www.osvdb.org/25658nvdBroken Link
- www.skype.com/security/skype-sb-2006-001.htmlnvdBroken Link
News mentions
0No linked articles in our index yet.