CVE-2006-0869

critical

Description

Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Application Repository (PEAR) LiveUser 0.16.8 and earlier allows remote attackers to determine file existence, and possibly delete arbitrary files with short pathnames or possibly read arbitrary files, via a .. (dot dot) in the store_id value of a cookie.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/24853

https://exchange.xforce.ibmcloud.com/vulnerabilities/24852

http://www.vupen.com/english/advisories/2006/0697

http://www.securityfocus.com/bid/16761

http://www.securityfocus.com/archive/1/425711/100/0/threaded

http://www.gulftech.org/?node=research&article_id=00103-02212006

http://securitytracker.com/id?1015659

http://securityreason.com/securityalert/466

http://pear.php.net/package/LiveUser/download/

Details

Source: Mitre, NVD

Published: 2006-02-23

Updated: 2026-04-16

Risk Information

CVSS v2

Base Score: 6.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 9.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Severity: Critical

EPSS

EPSS: 0.15798