« Volver al listado

CVE-2006-4030

Estado: ModificadaMedia (5)—

Unspecified vulnerability in the stats module in Gallery 1.5.1-RC2 and earlier allows remote attackers to obtain sensitive information via unspecified attack vectors, related to "two file exposure bugs."

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2006-4030",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2006-08-16T22:04:00.000",
  "references": [
    {
      "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=325285",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/16594",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/21502",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.debian.org/security/2006/dsa-1148",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/19453",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2006/3250",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=325285",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/16594",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/21502",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.debian.org/security/2006/dsa-1148",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/19453",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2006/3250",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Unspecified vulnerability in the stats module in Gallery 1.5.1-RC2 and earlier allows remote attackers to obtain sensitive information via unspecified attack vectors, related to \"two file exposure bugs.\""
    },
    {
      "lang": "es",
      "value": "Vulnerabilidad no especificada en el módulo de estadísticas en Gallery 1.5.1-RC2 y anteriores permite a atacantes remotos obtener información sensible a través de vectores de ataque desconocidos, relacionados con \"dos bugs de exposición de archivos\"."
    }
  ],
  "lastModified": "2026-06-16T22:28:17.630",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E7891FC7-5630-4AF7-98E8-CF27BA3D6595",
              "versionEndIncluding": "1.5.1_rc2"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B821AEB0-7C0C-407E-9CCB-EEB16E1A2719"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F517D6BA-9793-4A4D-BDC6-2F5349F0B354"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E876B0F6-8363-43E0-8E00-E55B04A05F7F"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.3_pl1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4131E313-CB18-45D7-9F4C-096EB0337B7D"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.3_pl2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4A2D7CE2-1461-4D01-A4B1-9E6F7A68FB2F"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.4_pl2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AFA0436A-8294-44B4-B7D1-62A73BE4DFAC"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.4_pl3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A9125286-5A7D-4A1B-B5C4-888581B9798C"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.4_pl4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "54143C9E-0EB0-4137-A01A-3E8C8A7412F0"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4.4_pl5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "89382A13-8E5D-44DC-8D6B-8FD8DCAFE525"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4_pl1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3C999044-00FE-4DE1-A235-F036FC9AE09A"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.4_pl2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "36A59F6E-A44B-4949-8487-CB089BF1CE5B"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8B6B3525-BD38-47CF-B60A-F392FABDA357"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.5.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BD453B4B-75B9-476D-B1A6-65AB8E09107E"
            },
            {
              "criteria": "cpe:2.3:a:gallery_project:gallery:1.5_pl1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "80EB7ED6-F6AE-4E0E-BDEF-6F4E9D12F496"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org",
  "evaluatorSolution": "Update to version 1.5-pl1."
}