113 lines
3.0 KiB
JSON
Raw Normal View History

2023-04-24 12:24:31 +02:00
{
"id": "CVE-2006-2829",
"sourceIdentifier": "cve@mitre.org",
"published": "2006-06-05T20:06:00.000",
"lastModified": "2017-07-20T01:31:48.803",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Buffer overflow in Hawk Monitoring Agent (HMA) for TIBCO Hawk before 4.6.1 and TIBCO Runtime Agent (TRA) before 5.4 allows authenticated users to execute arbitrary code via the configuration for tibhawkhma."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:S/C:C/I:C/A:C",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 6.8
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 3.1,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": true,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:tibco:hawk:4.6.0:*:*:*:*:*:*:*",
"matchCriteriaId": "F540B195-58CD-4491-9D4F-9BCB87F696AC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:tibco:hawk_monitoring_agent:*:*:*:*:*:*:*:*",
"matchCriteriaId": "8B63E05C-0726-4C19-A80E-A2CFDA8FA887"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:tibco:runtime_agent:5.3:*:*:*:*:*:*:*",
"matchCriteriaId": "ACF12C0E-8768-4A03-B56B-D635076B01C8"
}
]
}
]
}
],
"references": [
{
"url": "http://securitytracker.com/id?1016223",
"source": "cve@mitre.org"
},
{
"url": "http://www.kb.cert.org/vuls/id/620516",
"source": "cve@mitre.org",
"tags": [
"Patch",
"US Government Resource"
]
},
{
"url": "http://www.securityfocus.com/bid/18300",
"source": "cve@mitre.org"
},
{
"url": "http://www.tibco.com/resources/mk/hawk_security_advisory.txt",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://www.vupen.com/english/advisories/2006/2156",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/26938",
"source": "cve@mitre.org"
}
]
}