CVE-2006-4003
Summary
| CVE | CVE-2006-4003 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-07 19:04:00 UTC |
| Updated | 2018-10-17 21:32:00 UTC |
| Description | The config method in Henrik Storner Hobbit monitor before 4.1.2p2 permits access to files outside of the intended configuration directory, which allows remote attackers to obtain sensitive information via requests to the hobbitd daemon on port 1984/tcp. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Hobbit Monitor | Hobbit Monitor | 4.0 | All | All | All |
| Application | Hobbit Monitor | Hobbit Monitor | 4.1 | All | All | All |
| Application | Hobbit Monitor | Hobbit Monitor | 4.0 | All | All | All |
| Application | Hobbit Monitor | Hobbit Monitor | 4.1 | All | All | All |
| Application | Hobbit Monitor | Hobbit Monitor | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Hobbit Monitor "config" Method Information Disclosure - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| Webmail | OVH- OVH | VUPEN | www.vupen.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Hobbit Monitor Config Information Disclosure Vulnerability | BID | www.securityfocus.com | Patch |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Xymon systems and network monitor download | SourceForge.net | CONFIRM | sourceforge.net | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.