121 lines
3.2 KiB
JSON
Raw Normal View History

2023-04-24 12:24:31 +02:00
{
"id": "CVE-2006-2829",
"sourceIdentifier": "cve@mitre.org",
"published": "2006-06-05T20:06:00.000",
"lastModified": "2017-07-20T01:31:48.803",
"vulnStatus": "Modified",
"cveTags": [],
2023-04-24 12:24:31 +02:00
"descriptions": [
{
"lang": "en",
"value": "Buffer overflow in Hawk Monitoring Agent (HMA) for TIBCO Hawk before 4.6.1 and TIBCO Runtime Agent (TRA) before 5.4 allows authenticated users to execute arbitrary code via the configuration for tibhawkhma."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:S/C:C/I:C/A:C",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 6.8
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 3.1,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": true,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:tibco:hawk:4.6.0:*:*:*:*:*:*:*",
"matchCriteriaId": "F540B195-58CD-4491-9D4F-9BCB87F696AC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:tibco:hawk_monitoring_agent:*:*:*:*:*:*:*:*",
"matchCriteriaId": "8B63E05C-0726-4C19-A80E-A2CFDA8FA887"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:tibco:runtime_agent:5.3:*:*:*:*:*:*:*",
"matchCriteriaId": "ACF12C0E-8768-4A03-B56B-D635076B01C8"
}
]
}
]
}
],
"references": [
{
"url": "http://secunia.com/advisories/20431",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
2023-04-24 12:24:31 +02:00
{
"url": "http://securitytracker.com/id?1016223",
"source": "cve@mitre.org"
},
{
"url": "http://www.kb.cert.org/vuls/id/620516",
"source": "cve@mitre.org",
"tags": [
"Patch",
"US Government Resource"
]
},
{
"url": "http://www.securityfocus.com/bid/18300",
"source": "cve@mitre.org"
},
{
"url": "http://www.tibco.com/resources/mk/hawk_security_advisory.txt",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://www.vupen.com/english/advisories/2006/2156",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/26938",
"source": "cve@mitre.org"
}
]
}