CVE Vulnerabilities

CVE-2006-3072

Published: Jun 19, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

M4 Macro Library in Symantec Security Information Manager before 4.0.2.29 HOTFIX 1 allows local users to execute arbitrary commands via crafted rule definitions, which produces dangerous Java code during M4 transformation.

Affected Software

Name Vendor Start Version End Version
Security_information_manager Symantec 4.0.2.25 4.0.2.25
Security_information_manager Symantec 4.0.2.14 4.0.2.14
Security_information_manager Symantec 4.0.2.1 4.0.2.1
Security_information_manager Symantec 4.0.2.11 4.0.2.11
Security_information_manager Symantec 4.0.2.28 4.0.2.28
Security_information_manager Symantec 4.0.2.24 4.0.2.24
Security_information_manager Symantec 4.0.2.2 4.0.2.2
Security_information_manager Symantec 4.0.2.22 4.0.2.22
Security_information_manager Symantec 4.0.2.19 4.0.2.19
Security_information_manager Symantec 4.0.2.27 4.0.2.27
Security_information_manager Symantec 4.0.2.5 4.0.2.5
Security_information_manager Symantec 4.0.2.17 4.0.2.17
Security_information_manager Symantec 4.0.2.21 4.0.2.21
Security_information_manager Symantec 4.0.2.8 4.0.2.8
Security_information_manager Symantec 4.0.2.15 4.0.2.15
Security_information_manager Symantec 4.0.2.12 4.0.2.12
Security_information_manager Symantec 4.0.2.7 4.0.2.7
Security_information_manager Symantec 4.0.2.23 4.0.2.23
Security_information_manager Symantec 4.0.2.13 4.0.2.13
Security_information_manager Symantec 4.0.2.6 4.0.2.6
Security_information_manager Symantec 4.0.2.3 4.0.2.3
Security_information_manager Symantec 4.0.2.18 4.0.2.18
Security_information_manager Symantec 4.0.2.16 4.0.2.16
Security_information_manager Symantec 4.0.2.4 4.0.2.4
Security_information_manager Symantec 4.0.2.10 4.0.2.10
Security_information_manager Symantec 4.0.2 4.0.2
Security_information_manager Symantec 4.0.2.29 4.0.2.29
Security_information_manager Symantec 4.0.2.9 4.0.2.9
Security_information_manager Symantec 4.0.2.26 4.0.2.26
Security_information_manager Symantec 4.0.2.20 4.0.2.20

References