AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-0704

LOW · CVSS 2.6 EPSS 1.22%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-02-15 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 2.6. It may be remotely exploitable.

CVE
CVE-2006-0704
Severity
LOW
CVSS
2.6
EPSS
1.22%

Original NVD Description

iE Integrator 4.4.220114, when configured without a "bespoke error page" in acm.ini, allows remote attackers to obtain sensitive information via a URL that calls a non-existent .aspx script in the integrator/apps directory, which results in an error message that displays the installation path, web server name, IP, and port, session cookie information, and the IIS system username.