CVE-2006-0144 describes a critical vulnerability in the go-pear.php proxy server feature within PHP PEAR 0.2.2, specifically as integrated into Apache2Triad. This flaw allows unauthenticated remote attackers to execute arbitrary PHP code. Attackers can achieve this by redirecting go-pear.php to a malicious proxy, which then serves a modified Tar.php file containing a malicious extractModify function. The vulnerability carries a CVSS score of 7.5 (High), indicating a severe risk. It is easily exploitable over the network with low attack complexity and requires no authentication, potentially leading to complete compromise of confidentiality, integrity, and availability. Despite its age and severity, there is no evidence of active exploitation, nor are there publicly available exploit modules in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, suggesting it has not garnered significant attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:apache2triad:apache2triad:*:*:*:*:*:*:*:* | ||
0.2.2CPE matchmatch criteria | cpe:2.3:a:php:pear:0.2.2:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.