| Vulnerability Name: | CVE-2006-4691 (CCN-29948) | ||||||||
| Assigned: | 2006-11-14 | ||||||||
| Published: | 2006-11-14 | ||||||||
| Updated: | 2018-10-17 | ||||||||
| Summary: | Stack-based buffer overflow in the NetpManageIPCConnect function in the Workstation service (wkssvc.dll) in Microsoft Windows 2000 SP4 and XP SP2 allows remote attackers to execute arbitrary code via NetrJoinDomain2 RPC messages with a long hostname. | ||||||||
| CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
| CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 8.3 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
8.3 High (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-Other | ||||||||
| Vulnerability Consequences: | Gain Access | ||||||||
| References: | Source: MITRE Type: CNA CVE-2006-4691 Source: CCN Type: eEye Digital Security Advisory AD20061114 Workstation Service NetpManageIPCConnect Buffer Overflow Source: EEYE Type: UNKNOWN AD20061114 Source: CCN Type: SA22883 Microsoft Windows Workstation Service Buffer Overflow Vulnerability Source: SECUNIA Type: Patch, Vendor Advisory 22883 Source: CCN Type: SECTRACK ID: 1017221 Windows Workstation Service Buffer Overflow Lets Remote Users Execute Arbitrary Code Source: SECTRACK Type: UNKNOWN 1017221 Source: CCN Type: ASA-2006-253 Microsoft Security Bulletin Summary for November 2006 (MS06-66 - MS06-71) Source: CCN Type: IBM Internet Security Systems Protection Alert, November 14, 2006 Vulnerability in Microsoft Workstation Service could allow remote code execution Source: CCN Type: US-CERT VU#778036 Microsoft Workstation Service fails to properly parse malformed network messages Source: CERT-VN Type: US Government Resource VU#778036 Source: CCN Type: Microsoft Security Advisory (928604) Exploit Code Published Affecting the Workstation Service on Windows 2000 Source: CCN Type: Microsoft Security Bulletin MS06-070 Vulnerability in Workstation Service Could Allow Remote Code Execution (924270) Source: BUGTRAQ Type: UNKNOWN 20061114 EEYE: Workstation Service NetpManageIPCConnect Buffer Overflow Source: BID Type: UNKNOWN 20985 Source: CCN Type: BID-20985 Microsoft Windows Workstation Service NetpManageIPCConnect Remote Code Execution Vulnerability Source: CERT Type: US Government Resource TA06-318A Source: VUPEN Type: UNKNOWN ADV-2006-4508 Source: MS Type: UNKNOWN MS06-070 Source: XF Type: UNKNOWN win-workstation-service-bo(29948) Source: XF Type: UNKNOWN win-workstation-service-bo(29948) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:607 Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:908 Source: CCN Type: Rapid7 Vulnerability and Exploit Database [11-14-2006] MS06-070 Microsoft Workstation Service NetpManageIPCConnect Overflow | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| Oval Definitions | |||||||||
| |||||||||
| BACK | |||||||||