Security Advisory

CVE-2006-6513

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-12-14 01:00:00
Last updated 2024-08-07 20:26:46
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The CControl::Download function (/dl URI) in Winamp Web Interface (Wawi) 7.5.13 and earlier allows remote authenticated users to download arbitrary file types under the root via a trailing "." (dot) in a filename in the file parameter, related to erroneous behavior of the IsWinampFile function.