CVE Vulnerabilities

CVE-2006-7162

Published: Mar 07, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.9 LOW
AV:L/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which allows local users to gain sensitive information by reading these files.

Affected Software

NameVendorStart VersionEnd Version
PuttyPutty*0.59 (including)
PuttyUbuntudapper*
PuttyUbuntuedgy*

References