Unrated severityNVD Advisory· Published Oct 27, 2006· Updated Apr 23, 2026
CVE-2006-5570
CVE-2006-5570
Description
Directory traversal vulnerability in /scripts/cruise/cws.exe in CruiseWorks 1.09c and 1.09d allows remote attackers to read arbitrary files via a .. (dot dot) in the doc parameter.
Affected products
2cpe:2.3:a:kynoslogic:cruiseworks:1.09c:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:kynoslogic:cruiseworks:1.09c:*:*:*:*:*:*:*
- cpe:2.3:a:kynoslogic:cruiseworks:1.09d:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- secunia.com/advisories/22139nvdVendor Advisory
- marc.infonvd
- securityreason.com/securityalert/1790nvd
- securitytracker.com/alerts/2006/Oct/1017110.htmlnvd
- vuln.sg/cruiseworks109d-en.htmlnvd
- www.securityfocus.com/archive/1/449572/100/0/threadednvd
- www.securityfocus.com/bid/20698nvd
- www.vupen.com/english/advisories/2006/4158nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/29765nvd
News mentions
0No linked articles in our index yet.