VYPR
Unrated severityNVD Advisory· Published Jun 23, 2006· Updated Apr 16, 2026

CVE-2006-3194

CVE-2006-3194

Description

Directory traversal vulnerability in index.php in singapore 0.10.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the (1) gallery and (2) template parameter.

Affected products

17
  • Singapore/Singapore17 versions
    cpe:2.3:a:singapore:singapore:0.10.0:*:*:*:*:*:*:*+ 16 more
    • cpe:2.3:a:singapore:singapore:0.10.0:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.10:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.10_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.11_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.1_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.2_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.3_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.4_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.5_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.6_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.7:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.7_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.8_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.9a_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9.9b_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9a_beta:*:*:*:*:*:*:*
    • cpe:2.3:a:singapore:singapore:0.9_beta:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.