AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2006-2633

MEDIUM · CVSS 4 EPSS 1.27%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-05-30 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2006-2633
Severity
MEDIUM
CVSS
4
EPSS
1.27%

Original Filing — NVD Description

Absolute path traversal vulnerability in the copy action in index.php in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to create or overwrite files in other users' directories by specifying the absolute path of the directory in the infolder parameter and simultaneously specifying the filename in the filepath parameter.