Unspecified vulnerability in VCEngine.php in v-creator before 1.3-pre3, when the...
Vulnerability Description
Unspecified vulnerability in VCEngine.php in v-creator before 1.3-pre3, when the VC_CRYPTO_METHOD option is OPENSSL, allows remote attackers to execute arbitrary commands, possibly due to problems in the (1) encrypt and (2) decrypt functions.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-1599
Credits & Attribution
No credits recorded in the NVD database.
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25560
- http://sourceforge.net/forum/forum.php?forum_id=557129
- http://www.securityfocus.com/bid/17328
- http://secunia.com/advisories/19453
- http://www.osvdb.org/24304
- https://sourceforge.net/p/vcreator/news/2006/03/v-creator-v13-pre3-released/
- http://www.vupen.com/english/advisories/2006/1189
Affected Vendor
v-creator.com
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.