CVE-2006-6598

Publication date 15 December 2006

Last updated 17 July 2025


Ubuntu priority

Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the path parameter, a different vector than CVE-2006-6328.

Status

Package Ubuntu Release Status
torrentflux 7.10 gutsy
Fixed 2.1-7
7.04 feisty
Fixed 2.1-7
6.10 edgy
Fixed 2.1-1ubuntu0.2
6.06 LTS dapper Not in release