CVE-2006-3217
Summary
| CVE | CVE-2006-3217 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-06-24 01:06:00 UTC |
| Updated | 2018-10-18 16:46:00 UTC |
| Description | JaguarEditControl (JEdit) ActiveX Control 1.1.0.20 and earlier allows remote attackers to obtain sensitive information, such as the username and MAC and IP addresses, by setting the test field to certain values such as 2404 or 2790, then reading the information from the .JText field. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Jaguarsoft | Jaguaredit | 1.1.0.18 | All | All | All |
| Application | Jaguarsoft | Jaguaredit | 1.1.0.19 | All | All | All |
| Application | Jaguarsoft | Jaguaredit | 1.1.0.18 | All | All | All |
| Application | Jaguarsoft | Jaguaredit | 1.1.0.19 | All | All | All |
| Application | Jaguarsoft | Jaguaredit | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.srlabs.net/bulten/JaguarEdit_2.htm | MISC | www.srlabs.net | Exploit, Vendor Advisory |
| CXSecurity - IDS | SREASON | securityreason.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| www.srlabs.net/bulten/source/Jaguar.htm | MISC | www.srlabs.net | |
| JaguarEdit ActiveX Control Information Disclosure Vulnerability | BID | www.securityfocus.com | Exploit |
| JaguarEditControl ActiveX Control Information Disclosure - Secunia Advisories - Vulnerability Intelligence - Secunia.com | SECUNIA | secunia.com | Exploit, Vendor Advisory |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.