This page aggregates publicly disclosed CVE and security risk information related to russcom_network, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2006-2615 | ping.php in Russcom.Ping allows remote attackers to execute arbitrary commands via shell metacharacters in the domain parameter. | [email protected] | 7.5 | 2.17% | 2006-05-26 | 2026-04-16 |
| CVE-2006-2588 | Russcom PHPImages allows remote attackers to upload files of arbitrary types by uploading a file with a .gif extension. NOTE: due to lack of specific information about attack vectors do not depend on the existence of another vulnerability, it is not clear whether this is a vulnerability. | [email protected] | 5.0 | 1.33% | 2006-05-25 | 2026-04-16 |
| CVE-2006-2160 | Cross-site scripting (XSS) vulnerability in Russcom Network Loginphp (Russcom.Loginphp) allows remote attackers to inject arbitrary web script or HTML via the username field when registering. | [email protected] | 4.3 | 1.18% | 2006-05-03 | 2026-04-16 |
| CVE-2006-2159 | CRLF injection vulnerability in help.php in Russcom Network Loginphp allows remote attackers to spoof e-mails and inject MIME headers via CRLF sequences in the email address. | [email protected] | 5.0 | 1.35% | 2006-05-03 | 2026-04-16 |