« Volver al listado

CVE-2006-6762

Estado: ModificadaMedia (4)—

The IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to cause a denial of service via an APPEND command with a single "(" (parenthesis) in the argument.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2006-6762",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 4,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:S/C:N/I:N/A:P",
          "authentication": "SINGLE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2006-12-27T02:28:00.000",
  "references": [
    {
      "url": "http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=455",
      "tags": [
        "Patch"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/23437",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.kb.cert.org/vuls/id/944273",
      "tags": [
        "US Government Resource"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/21729",
      "tags": [
        "Patch"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2006/5134",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://secure-support.novell.com/KanisaPlatform/Publishing/328/3717068_f.SAL_Public.html",
      "tags": [
        "Patch"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=455",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/23437",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.kb.cert.org/vuls/id/944273",
      "tags": [
        "US Government Resource"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/21729",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2006/5134",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://secure-support.novell.com/KanisaPlatform/Publishing/328/3717068_f.SAL_Public.html",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to cause a denial of service via an APPEND command with a single \"(\" (parenthesis) in the argument."
    },
    {
      "lang": "es",
      "value": "El demonio IMAP (IMAPD) en  Novell NetMail anterior a 3.52e FTF2 permite a usuarios remotos autenticados provocar una denegación de servicio mediante el parámetro APPEND con un \"(\" (paréntesis) en el argumento."
    }
  ],
  "lastModified": "2026-06-16T22:33:44.807",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:novell:netmail:3.5.2:a:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6AFAEE62-246B-4687-8B9A-A6C142D72308"
            },
            {
              "criteria": "cpe:2.3:a:novell:netmail:3.5.2:b:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "21946EC8-3327-4AE6-9A0D-09C1EBCC7683"
            },
            {
              "criteria": "cpe:2.3:a:novell:netmail:3.5.2:c:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0B922B34-BBCA-4791-92EF-43ADDA7E2473"
            },
            {
              "criteria": "cpe:2.3:a:novell:netmail:3.5.2:c1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "21A064F2-7DFD-47FE-8537-1DC60B8E1087"
            },
            {
              "criteria": "cpe:2.3:a:novell:netmail:3.5.2:d:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7F7C6105-37B1-491A-BE29-34D409CC22FA"
            },
            {
              "criteria": "cpe:2.3:a:novell:netmail:3.5.2:e-ftfl:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "36CAB36C-7E40-4DE2-BC52-CDF5BE5C1371"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org",
  "evaluatorSolution": "This vulnerability is addressed in the following product update:\r\nNovell, NetMail, 3.52e FTF2"
}