CVE-2006-6755 describes an information disclosure vulnerability in Ixprim 1.2, specifically affecting the ixprim_cms product. A remote attacker can obtain sensitive path information by directly requesting kernel/plugins/fckeditor2/ixprim_api.php, which reveals the path in an error message. The vulnerability has a CVSS score of 5.0, indicating a medium severity, as it requires no authentication and has low attack complexity, leading to partial confidentiality impact. While there is an ExploitDB entry for a blind SQL injection in Ixprim CMS 1.2 (EDB-2975), this specific information disclosure vulnerability has no known active exploits, Metasploit modules, or Nuclei templates, and shows minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.2CPE matchmatch criteria | cpe:2.3:a:ixprim:ixprim_cms:1.2:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.