CVE Database
/

CVE-2006-6476

Back to search

CVE-2006-6476

Published: Dec 20, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and when the agent is bound to 0.0.0.0 (all interfaces), opens sockets in non-exclusive mode, which allows local users to hijack the socket, and capture data or cause a denial of service (loss of daemon operation).

VendorProductVersions

n/a

n/a

affected
n/a

References

23393
third-party-advisory
x_refsource_SECUNIA
ADV-2006-5061
vdb-entry
x_refsource_VUPEN
21548
vdb-entry
x_refsource_BID
2052
third-party-advisory
x_refsource_SREASON
1017394
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now