Lucene search

K
cve[email protected]CVE-2006-4506
HistoryOct 03, 2022 - 4:21 p.m.

CVE-2006-4506

2022-10-0316:21:32
web.nvd.nist.gov
21
cve-2006-4506
idmlib.sh
nxdrv
novell identity manager
idm 3.0.1
command execution
eval injection
nvd

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:P/A:N

8.1 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

idmlib.sh in nxdrv in Novell Identity Manager (IDM) 3.0.1 allows local users to execute arbitrary commands via unspecified vectors, possibly involving the " (quote) and \ (backslash) characters and eval injection.

Affected configurations

NVD
Node
netiqidentity_managerMatch3.0.1

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:P/A:N

8.1 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Related for CVE-2006-4506