CVE-2006-0869 EXPLOIT
6.4
MEDIUM · CVSS 2.0 · EPSS 4% (pctl 90)
Patch early
A public exploit exists.
Description
Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Application Repository (PEAR) LiveUser 0.16.8 and earlier allows remote attackers to determine file existence, and possibly delete arbitrary files with short pathnames or possibly read arbitrary files, via a .. (dot dot) in the store_id value of a cookie.
Scoring
| CVSS | 6.4 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:N |
| EPSS | 4.01% — more likely to be exploited than 90% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2006-02-23 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| pear | pear liveuser |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | PEAR LiveUser < 0.16.8 - Arbitrary File Access | 2016-02-21 |
References
- http://pear.php.net/package/LiveUser/download/
- http://securityreason.com/securityalert/466
- http://securitytracker.com/id?1015659
- http://www.gulftech.org/?node=research&article_id=00103-02212006
- http://www.securityfocus.com/archive/1/425711/100/0/threaded
- http://www.securityfocus.com/bid/16761
- http://www.vupen.com/english/advisories/2006/0697
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24852
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24853
- http://pear.php.net/package/LiveUser/download/
- http://securityreason.com/securityalert/466
- http://securitytracker.com/id?1015659
- http://www.gulftech.org/?node=research&article_id=00103-02212006
- http://www.securityfocus.com/archive/1/425711/100/0/threaded
- http://www.securityfocus.com/bid/16761
- http://www.vupen.com/english/advisories/2006/0697
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24852
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24853
→ the Explorer · watch your stack · NVD