Back

CVE-2006-0348

Format string vulnerability in the write_logfile function in ELOG before 2.6.1 allows remote attackers to cause a denial of service (server crash) via unknown attack vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Published: Jan 21, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (20)

Vendor Product Version
stefan_ritt elog_web_logbook 2.0.0
stefan_ritt elog_web_logbook 2.0.1
stefan_ritt elog_web_logbook 2.0.2
stefan_ritt elog_web_logbook 2.0.3
stefan_ritt elog_web_logbook 2.0.4
stefan_ritt elog_web_logbook 2.0.5
stefan_ritt elog_web_logbook 2.1.0
stefan_ritt elog_web_logbook 2.1.1
stefan_ritt elog_web_logbook 2.1.2
stefan_ritt elog_web_logbook 2.1.3
stefan_ritt elog_web_logbook 2.2.0
stefan_ritt elog_web_logbook 2.2.1
stefan_ritt elog_web_logbook 2.2.2
stefan_ritt elog_web_logbook 2.2.3
stefan_ritt elog_web_logbook 2.2.4
stefan_ritt elog_web_logbook 2.4
stefan_ritt elog_web_logbook 2.5
stefan_ritt elog_web_logbook 2.5.6
stefan_ritt elog_web_logbook 2.5.7
stefan_ritt elog_web_logbook 2.6.0

GitHub Security Advisory GHSA-4gvx-3pcr-xvm7

Format string vulnerability in the write_logfile function in ELOG before 2.6.1 allows remote...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 1.90%

Top 22% most likely to be exploited

Threat Score 20.6 / 100

Data Sources

NVD EPSS GitHub