CyberRota Analysis
AI analysis pending.
CVE
CVE-2006-3934
Severity
MEDIUM
CVSS
4
EPSS
1.43%
Original NVD Description
Absolute path traversal vulnerability in downloadTrigger.jsp in Alkacon OpenCms before 6.2.2 allows remote authenticated users to download arbitrary files via an absolute pathname in the filePath parameter.