CVE-2006-2824
Published Jun 5, 2006
Last updated 14 years ago
Overview
- Description
- Logicalware MailManager before 2.0.10 does not remove 0xc8 0x27 (0xc8 followed by a single-quote character) from the data stream to the server, which allows remote attackers to modify data and gain administrative access when PostgreSQL is used, aka "bug #1494281 - Postgres encoding security hole." NOTE: while this issue involves PostgreSQL, it is specific to MailManager's interface to PostgreSQL and is therefore a different vulnerability than CVE-2006-2313 and CVE-2006-2314.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A04A166D-BF58-47C5-ADD9-8275F97CA945" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D67DCB4C-8119-4EBC-93F8-C37167AACDC1" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.1_rc2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C7BF9CC3-409D-42CE-8CE2-8C327943AD72" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE679C87-970F-4FFA-89C3-EAA68C018796" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DC66718-53CD-4461-9F91-16E4740090CC" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8577AF02-96FD-4DF5-B03D-52505FD65951" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "69290F19-3B02-4B1A-AE24-C5FD8D0BF56F" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0102097C-FB3D-4DB6-B617-5588D2CCC4CE" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F8A0E5EF-AC18-495B-851C-0B787962A354" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1DB82ABE-3065-417C-A066-2D702DA239BF" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C457346-E816-4D4A-B917-F28EC01CE726" }, { "criteria": "cpe:2.3:a:logicalware:mailmanager:2.0_r7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EEA612BE-7EB7-4B61-9ACB-08CDFC3CD349" } ], "operator": "OR" } ] } ]