IT

Tracker / CVE-2006-2312

CVE-2006-2312

Low 2.6

Argument injection vulnerability in the URI handler in Skype 2.0.*.104 and 2.5.*.0 through 2.5.*.78 for Windows allows remote authorized attackers to download arbitrary files via a URL that contains certain command-line switches.

Affected products and versions

skype skype · … → 2.0.0.105
skype skype · 2.5.0.0 → 2.5.0.79

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References