Back to Database
Status published
Medium
CVE-2006-0575
convert-fcrontab in Fcron 2.9.5 and 3.0.0 allows remote attackers to...
Vulnerability Description
convert-fcrontab in Fcron 2.9.5 and 3.0.0 allows remote attackers to create or overwrite arbitrary files via ".." sequences and a symlink attack on the temporary file that is used during conversion.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-0575
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.osvdb.org/22905
- http://www.securityfocus.com/bid/25693
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24504
- http://www.trustix.org/errata/2006/0006
- http://www.vupen.com/english/advisories/2006/0435
- http://secunia.com/advisories/18719
- http://marc.info/?l=full-disclosure&m=113890734603201&w=2
More from thibault godouet
View All →CVE-2010-0792
fcrontab in fcron before 3.0.5 allows local users to read...
Low
1.9
CVE-2006-0539
The convert-fcrontab program in fcron 3.0.0 might allow local users...
Medium
4.6
CVE-2004-1033
Fcron 2.0.1, 2.9.4, and possibly earlier versions leak file descriptors...
Low
2.1
CVE-2004-1032
fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows...
Low
2.1
CVE-2004-1031
fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows...
High
7.2
Affected Vendor
thibault godouet
View all reports →Affected Software
fcron
Vulnerable Versions:
2.9.5, 3.0.0
Timeline
Official Publish:
February 7th, 2006
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.