Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2006-0917 | First vendor Publication | 2006-02-28 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:L/AC:L/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 2.1 | Attack Range | Local |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 3.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Melange Chat Server (aka M-Chat), when accessed via a web browser, automatically sends cookies and other sensitive information for a server to any port specified in the associated link, which allows local users on that server to read the cookies from HTTP headers and possibly gain sensitive information, such as credentials, by setting up a listening port and reading the credentials when the victim clicks on the link. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0917 |
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 1 |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
23459 | Melange Chat Server Telnet Service Client Information Disclosure |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:20:59 |
|
2024-11-28 12:08:24 |
|
2021-05-04 12:03:44 |
|
2021-04-22 01:04:17 |
|
2020-05-23 00:17:27 |
|
2018-10-18 21:19:59 |
|
2017-07-20 09:23:23 |
|
2016-04-26 14:20:46 |
|
2013-05-11 10:50:21 |
|