Vulnerability Name: | CVE-2006-0993 (CCN-26338) | ||||||||
Assigned: | 2006-05-09 | ||||||||
Published: | 2006-05-09 | ||||||||
Updated: | 2018-10-18 | ||||||||
Summary: | The web management interface in 3Com TippingPoint SMS Server before 2.2.1.4478 does not restrict access to certain directories, which might allow remote attackers to obtain potentially sensitive information such as configuration settings. Upgrade to 3Com TippingPoint SMS Server version 2.2.1.4478 | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: MITRE Type: CNA CVE-2006-0993 Source: CCN Type: SA20058 3Com TippingPoint SMS Server Information Disclosure Source: SECUNIA Type: UNKNOWN 20058 Source: SREASON Type: UNKNOWN 870 Source: CCN Type: SECTRACK ID: 1016051 TippingPoint SMS Server May Disclose Potentially Sensitive Information to Remote Users Source: SECTRACK Type: UNKNOWN 1016051 Source: CCN Type: 3Com Security Alert: 3COM-06-002 TippingPoint™ SMS Information Disclosure Source: CONFIRM Type: UNKNOWN http://www.3com.com/securityalert/alerts/3COM-06-002.html Source: OSVDB Type: UNKNOWN 25360 Source: CCN Type: OSVDB ID: 25360 3Com TippingPoint SMS Server Permission Weakness Remote Information Disclosure Source: BUGTRAQ Type: UNKNOWN 20060509 ZDI-06-013: 3Com TippingPoint SMS Server Information Disclosure Vulnerability Source: BID Type: UNKNOWN 17935 Source: CCN Type: BID-17935 3Com TippingPoint SMS Information Disclosure Vulnerability Source: VUPEN Type: UNKNOWN ADV-2006-1752 Source: MISC Type: Vendor Advisory http://www.zerodayinitiative.com/advisories/ZDI-06-013.html Source: XF Type: UNKNOWN tippingpoint-sms-information-disclosure(26338) Source: XF Type: UNKNOWN tippingpoint-sms-information-disclosure(26338) Source: CCN Type: ZDI-06-013 3Com TippingPoint SMS Server Information Disclosure Vulnerability | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |