AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-6338

MEDIUM · CVSS 5 EPSS 2.66%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-12-07 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-6338
Severity
MEDIUM
CVSS
5
EPSS
2.66%

Original NVD Description

Unrestricted file upload vulnerability in upload/index.php in deV!L`z Clanportal (DZCP) before 1.3.6.1 allows remote attackers to upload and execute arbitrary .php files by embedding PHP code in a JPEG or GIF file that is uploaded to inc/images/uploads/userpics/.