Unrated severityNVD Advisory· Published Dec 14, 2006· Updated Jun 16, 2026
CVE-2006-6556
CVE-2006-6556
Description
The eyeHome function in apps/eyeHome.eyeapp/aplic.php in EyeOS before 0.9.3-3 allows remote attackers to upload and execute arbitrary code via dangerous file extensions that are not all lowercase, which bypasses a cleansing operation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:o:eyeos:eyeos:0.9.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:eyeos:eyeos:0.9.2:*:*:*:*:*:*:*
- (no CPE)range: <0.9.3-3
Patches
Vulnerability mechanics
References
6- eyeos.blogspot.com/2006/12/eyeos-093-4-released-webmail-eyeapp.htmlnvdPatch
- prdownloads.sourceforge.net/eyeos/eyeOS-0.9.3-4.tar.gznvdPatch
- secunia.com/advisories/23388nvd
- www.securityfocus.com/bid/21639nvd
- www.vupen.com/english/advisories/2006/4962nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/30844nvd
News mentions
0No linked articles in our index yet.