ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2006-6017”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2006-6017
Published
2006-11-21
CVSS:
6.5
ShadowTrackr CVSS:
2.3
Summary:
WordPress before 2.0.5 does not properly store a profile containing a string representation of a serialized object, which allows remote authenticated users to cause a denial of service (application crash) via a string that represents a (1) malformed or (2) large serialized object, because the object triggers automatic unserialization for display.