Lucene search

K
cve[email protected]CVE-2006-2920
HistoryJun 09, 2006 - 1:02 a.m.

CVE-2006-2920

2006-06-0901:02:00
CWE-20
web.nvd.nist.gov
25
cve-2006-2920
sylpheed-claws
sylpheed
phishing
uri
security vulnerability

2.6 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

6.6 Medium

AI Score

Confidence

Low

0.206 Low

EPSS

Percentile

96.4%

Sylpheed-Claws before 2.2.2 and Sylpheed before 2.2.6 allow remote attackers to bypass the URI check functionality and makes it easier to conduct phishing attacks via a URI that begins with a space character.

Affected configurations

NVD
Node
sylpheedsylpheedRange2.2.5
OR
sylpheedsylpheedMatch2.0
OR
sylpheedsylpheedMatch2.0.1
OR
sylpheedsylpheedMatch2.0.2
OR
sylpheedsylpheedMatch2.0.3
OR
sylpheedsylpheedMatch2.1
OR
sylpheedsylpheedMatch2.1.1
OR
sylpheedsylpheedMatch2.1.2
OR
sylpheedsylpheedMatch2.1.3
OR
sylpheedsylpheedMatch2.1.4
OR
sylpheedsylpheedMatch2.1.5
OR
sylpheed-clawssylpheed-clawsRange2.2.1
OR
sylpheed-clawssylpheed-clawsMatch0.9.4
OR
sylpheed-clawssylpheed-clawsMatch0.9.5
OR
sylpheed-clawssylpheed-clawsMatch0.9.6
OR
sylpheed-clawssylpheed-clawsMatch1.0.2

2.6 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

6.6 Medium

AI Score

Confidence

Low

0.206 Low

EPSS

Percentile

96.4%

Related for CVE-2006-2920