CVE-2006-4246
Published Sep 19, 2006
Last updated 7 years ago
Overview
- Description
- Usermin before 1.220 (20060629) allows remote attackers to read arbitrary files, possibly related to chfn/save.cgi not properly handling an empty shell parameter, which results in changing root's shell instead of the shell of a specified user.
- Source
- security@debian.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 3.6
- Impact score
- 4.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:N/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Social media
- Hype score
- Not currently trending
Evaluator
- Comment
- -
- Impact
- -
- Solution
- -
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:usermin:usermin:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "26B92F53-3598-44F5-8CE1-A04A28EFF92E", "versionEndIncluding": "1.210" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1AD41B8B-72C0-411F-83E7-A82E1642FA26" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65A99166-28DF-4651-985F-922DBB06687E" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F9EACC7-1464-4476-9AA1-50DD902A3489" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD343610-8BE2-4916-AF30-66B21330D84C" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D54B4D9-5218-41F9-A701-F960199EE520" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B352FF6B-989C-4540-B434-9452851F745C" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.91:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F83F9841-49C7-410A-891F-365BBA043D2A" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.92:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "711485C5-F16A-4481-AEE3-E2AF1BAA09DE" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.93:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD5B9395-DCEA-4615-825E-1C4B42F25E2B" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.94:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B7162DD-DFE1-478D-B87C-28C393E20941" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.95:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A01D1150-FCDE-47F5-BFE6-F06A294D7B29" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.96:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2D673B88-A9D9-4D22-9531-7F06791BC551" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.97:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "538021A3-2A6E-446F-B14D-4DCC7A470E55" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.98:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB1A2A26-1187-46BE-8EFC-F3C325679245" }, { "criteria": "cpe:2.3:a:usermin:usermin:0.99:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E70B0A6-31C9-4D78-B4B9-E75B45B6368C" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.000:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C70274C3-7CA0-49A2-B63C-7DAF492CCD0B" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.010:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A7C4A319-0EA6-47E0-831A-27530DCF714E" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.020:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1009D90-9851-441B-A2E2-FA5B676E8182" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.030:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "934A3D3F-CF10-478C-9206-DB468BCA4702" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.040:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "77B42570-F094-4C25-B246-6439D3FF4B30" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.051:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "69A30BB5-2C3F-4C39-8CDC-CC0CC280384C" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.060:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "753BF8DE-D225-4301-A6A6-50CD60B34234" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.070:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FC37A972-11D7-4C85-A8DC-5EDE808629F8" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.080:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EA7131C0-4FE1-4D69-9B21-8A9BFADE2A2B" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.090:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6499BF74-CA64-4192-A45F-0D8B30C1FF37" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.100:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0E9BC53-C2EC-43B8-9B5D-40675CF4C335" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.110:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4702AEBE-E774-4015-974C-761901D50697" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.120:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9AC9875A-3D23-4E4B-9A18-F8F86A62E5DC" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.130:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8AED1941-33C5-4C29-BC85-F43B0BE3920B" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.140:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D05ED34F-0D69-4A4F-B59B-15437E991075" }, { "criteria": "cpe:2.3:a:usermin:usermin:1.150:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B443FCF7-5949-4084-BA55-74F45A8ADB66" } ], "operator": "OR" } ] } ]