2024-04-04 08:46:00 +00:00

105 lines
3.0 KiB
JSON

{
"id": "CVE-2006-1285",
"sourceIdentifier": "cve@mitre.org",
"published": "2006-03-19T23:02:00.000",
"lastModified": "2011-03-08T02:32:42.643",
"vulnStatus": "Modified",
"evaluatorSolution": "Update to Symantec Ghost 8.3 that is shipped as a part of Symantec Ghost Solutions Suite 1.1.",
"descriptions": [
{
"lang": "en",
"value": "SQLAnywhere in Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, gives read and write permissions to all users for database shared memory sections, which allows local users to access and possibly modify certain information."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:S/C:P/I:P/A:N",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 3.2
},
"baseSeverity": "LOW",
"exploitabilityScore": 3.1,
"impactScore": 4.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:symantec:ghost_solutions_suite:1.0:*:*:*:*:*:*:*",
"matchCriteriaId": "5CC78C2D-E376-40C9-A413-E7F1740F8CF1"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:symantec:norton_ghost:8.0:*:*:*:*:*:*:*",
"matchCriteriaId": "7C4506E0-F4FE-43F0-886A-2F18C39934DA"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:symantec:norton_ghost:8.2:*:*:*:*:*:*:*",
"matchCriteriaId": "48B6AF37-11B3-4F38-B6E9-04FC32A28630"
}
]
}
]
}
],
"references": [
{
"url": "http://secunia.com/advisories/19171",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://securityresponse.symantec.com/avcenter/security/Content/2006.03.07.html",
"source": "cve@mitre.org"
},
{
"url": "http://securitytracker.com/id?1015733",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/17019",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2006/0870",
"source": "cve@mitre.org"
}
]
}