Back

CVE-2006-1073

Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and earlier allows remote attackers to include or read arbitrary .txt files via the (1) act and (2) blogid parameters.

Published: Mar 8, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
simplog simplog *

GitHub Security Advisory GHSA-xccw-v28q-j2c8

Directory traversal vulnerability in index.php in Daverave Simplog 1.0.2 and earlier allows...

Risk Scores

CVSS Score 6.4 / 10
EPSS Score 3.14%

Top 13% most likely to be exploited

Threat Score 26.5 / 100

Data Sources

NVD EPSS GitHub