AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-6033

HIGH · CVSS 7.5 EPSS 1.59%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-11-21 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-6033
Severity
HIGH
CVSS
7.5
EPSS
1.59%

Original NVD Description

Multiple directory traversal vulnerabilities in Simple PHP Blog (SPHPBlog), probably 0.4.8, allow remote attackers to read arbitrary files and possibly include arbitrary PHP code via a .. (dot dot) sequence in the blog_theme parameter in (1) index.php, (2) add_cgi.php, (3) add_link.php, (4) login.php, (5) template.php, or (6) contact.php.