Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-4154
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-4154

Description:
Format string vulnerability in the mod_tcl module 1.0 for Apache 2.x allows context-dependent attackers to execute arbitrary code via format string specifiers that are not properly handled in a set_var function call in (1) tcl_cmds.c and (2) tcl_core.c.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/29550

ST
  1017062

SAID
  Secunia Advisory: SA22549
  Secunia Advisory: SA22458

OSVDB
  29536

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=421

GENTOO
  http://security.gentoo.org/glsa/glsa-200610-12.xml

CERT-VN
  366020

BID
  20527


Return to the previous page.