PublicDate: 2006-07-21 14:03:00 UTC Candidate: CVE-2006-3682 References: https://ubuntu.com/security/notices/USN-360-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3682 Description: awstats.pl in AWStats 6.5 build 1.857 and earlier allows remote attackers to obtain the installation path via the (1) year, (2) pluginmode or (3) month parameters. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_awstats: released (6.5-1ubuntu1.2) edgy_awstats: released (6.5-2ubuntu1) feisty_awstats: released (6.5-2ubuntu1) devel_awstats: not-affected upstream_awstats: needs-triage