2.6
CVE-2006-3217
- EPSS 1.51%
- Veröffentlicht 24.06.2006 01:06:00
- Zuletzt bearbeitet 16.06.2026 22:26:38
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
JaguarEditControl (JEdit) ActiveX Control 1.1.0.20 and earlier allows remote attackers to obtain sensitive information, such as the username and MAC and IP addresses, by setting the test field to certain values such as 2404 or 2790, then reading the information from the .JText field.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jaguarsoft ≫ Jaguaredit Version <= 1.1.0.20
Jaguarsoft ≫ Jaguaredit Version1.1.0.18
Jaguarsoft ≫ Jaguaredit Version1.1.0.19
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.51% | 0.711 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:P/I:N/A:N
|
http://secunia.com/advisories/20759
http://securityreason.com/securityalert/1145
http://www.securityfocus.com/archive/1/437937/100/0/threaded
http://www.securityfocus.com/bid/18576
http://www.srlabs.net/bulten/JaguarEdit_2.htm
http://www.srlabs.net/bulten/source/Jaguar.htm
http://www.vupen.com/english/advisories/2006/2489
https://exchange.xforce.ibmcloud.com/vulnerabilities/27290