Description
awstats.pl in AWStats 6.5 build 1.857 and earlier allows remote attackers to obtain the installation path via the (1) year, (2) pluginmode or (3) month parameters.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2006-3677 | awstats.pl in AWStats 6.5 build 1.857 and earlier allows remote attackers to obtain the installation path via the (1) year, (2) pluginmode or (3) month parameters. |
Ubuntu USN |
USN-360-1 | awstats vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:39:53.566Z
Reserved: 2006-07-18T00:00:00.000Z
Link: CVE-2006-3682
No data.
Status : Modified
Published: 2006-07-21T14:03:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2006-3682
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN