Lucene search

K
cveMitreCVE-2006-2838
HistoryJun 06, 2006 - 8:06 p.m.

CVE-2006-2838

2006-06-0620:06:00
mitre
web.nvd.nist.gov
25
cve-2006-2838
buffer overflow
f-secure
anti-virus
microsoft exchange
internet gatekeeper
denial of service
code execution

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

High

EPSS

0.051

Percentile

93.0%

Buffer overflow in the web console in F-Secure Anti-Virus for Microsoft Exchange 6.40, and Internet Gatekeeper 6.40 through 6.42 and 6.50 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors. NOTE: By default, the connections are only allowed from the local host.

Affected configurations

Nvd
Node
f-securef-secure_anti-virusMatch6.40ms_exchange
OR
f-secureinternet_gatekeeperMatch6.4
OR
f-secureinternet_gatekeeperMatch6.41
OR
f-secureinternet_gatekeeperMatch6.42
OR
f-secureinternet_gatekeeperMatch6.50
VendorProductVersionCPE
f-securef-secure_anti-virus6.40cpe:2.3:a:f-secure:f-secure_anti-virus:6.40:*:ms_exchange:*:*:*:*:*
f-secureinternet_gatekeeper6.4cpe:2.3:a:f-secure:internet_gatekeeper:6.4:*:*:*:*:*:*:*
f-secureinternet_gatekeeper6.41cpe:2.3:a:f-secure:internet_gatekeeper:6.41:*:*:*:*:*:*:*
f-secureinternet_gatekeeper6.42cpe:2.3:a:f-secure:internet_gatekeeper:6.42:*:*:*:*:*:*:*
f-secureinternet_gatekeeper6.50cpe:2.3:a:f-secure:internet_gatekeeper:6.50:*:*:*:*:*:*:*

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

High

EPSS

0.051

Percentile

93.0%