CVE-2006-2838
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/06/2006
Last modified:
03/04/2025
Description
Buffer overflow in the web console in F-Secure Anti-Virus for Microsoft Exchange 6.40, and Internet Gatekeeper 6.40 through 6.42 and 6.50 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors. NOTE: By default, the connections are only allowed from the local host.
Impact
Base Score 2.0
7.60
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:f-secure:f-secure_anti-virus:6.40:*:ms_exchange:*:*:*:*:* | ||
cpe:2.3:a:f-secure:internet_gatekeeper:6.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:f-secure:internet_gatekeeper:6.41:*:*:*:*:*:*:* | ||
cpe:2.3:a:f-secure:internet_gatekeeper:6.42:*:*:*:*:*:*:* | ||
cpe:2.3:a:f-secure:internet_gatekeeper:6.50:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/20407
- http://securitytracker.com/id?1016196=
- http://securitytracker.com/id?1016197=
- http://www.f-secure.com/security/fsc-2006-3.shtml
- http://www.vupen.com/english/advisories/2006/2076
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26799
- http://secunia.com/advisories/20407
- http://securitytracker.com/id?1016196=
- http://securitytracker.com/id?1016197=
- http://www.f-secure.com/security/fsc-2006-3.shtml
- http://www.vupen.com/english/advisories/2006/2076
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26799