{"api_version":"1","generated_at":"2026-07-23T09:35:23+00:00","cve":"CVE-2006-1379","urls":{"html":"https://cve.report/CVE-2006-1379","api":"https://cve.report/api/cve/CVE-2006-1379.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-1379","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-1379"},"summary":{"title":"CVE-2006-1379","description":"Trend Micro PC-cillin Internet Security 2006 14.00.1485 and 14.10.0.1023, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying executable programs such as (1) tmntsrv.exe and (2) tmproxy.exe.","state":"PUBLISHED","assigner":"mitre","published_at":"2006-03-24 11:02:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.2","severity":"","vector":"AV:L/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.vupen.com/english/advisories/2006/1042","name":"http://www.vupen.com/english/advisories/2006/1042","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.secumind.net/content/french/modules/news/article.php?storyid=9&sel_lang=english","name":"http://www.secumind.net/content/french/modules/news/article.php?storyid=9&sel_lang=english","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory","URL Repurposed"],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"http://secunia.com/advisories/19282","name":"http://secunia.com/advisories/19282","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Patch","Vendor Advisory"],"title":"Secunia - Advisories - PC-cillin Internet Security Insecure Default Directory Permissions","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-1379","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-1379","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"1379","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"trend_micro","cpe5":"pc-cillin_2006","cpe6":"14.00.1485","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1379","vulnerable":"1","versionEndIncluding":"14.10.0.1023","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"trend_micro","cpe5":"pc-cillin_2006","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2006","cve_id":"1379","cve":"CVE-2006-1379","epss":"0.000660000","percentile":"0.203540000","score_date":"2026-04-19","updated_at":"2026-04-20 00:11:20"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T17:12:20.930Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.secumind.net/content/french/modules/news/article.php?storyid=9&sel_lang=english"},{"name":"19282","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/19282"},{"name":"ADV-2006-1042","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2006/1042"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2006-03-15T00:00:00.000Z","descriptions":[{"lang":"en","value":"Trend Micro PC-cillin Internet Security 2006 14.00.1485 and 14.10.0.1023, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying executable programs such as (1) tmntsrv.exe and (2) tmproxy.exe."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2009-02-26T10:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_MISC"],"url":"http://www.secumind.net/content/french/modules/news/article.php?storyid=9&sel_lang=english"},{"name":"19282","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/19282"},{"name":"ADV-2006-1042","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2006/1042"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-1379","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Trend Micro PC-cillin Internet Security 2006 14.00.1485 and 14.10.0.1023, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying executable programs such as (1) tmntsrv.exe and (2) tmproxy.exe."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://www.secumind.net/content/french/modules/news/article.php?storyid=9&sel_lang=english","refsource":"MISC","url":"http://www.secumind.net/content/french/modules/news/article.php?storyid=9&sel_lang=english"},{"name":"19282","refsource":"SECUNIA","url":"http://secunia.com/advisories/19282"},{"name":"ADV-2006-1042","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/1042"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2006-1379","datePublished":"2006-03-24T11:00:00.000Z","dateReserved":"2006-03-24T00:00:00.000Z","dateUpdated":"2024-08-07T17:12:20.930Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2006-03-24 11:02:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:pc-cillin_2006:*:*:*:*:*:*:*:*","versionEndIncluding":"14.10.0.1023","matchCriteriaId":"DCAAE1D4-5A89-41A7-BC03-9D0708A06873"},{"vulnerable":true,"criteria":"cpe:2.3:a:trend_micro:pc-cillin_2006:14.00.1485:*:*:*:*:*:*:*","matchCriteriaId":"7275738E-9E4F-4A0C-B046-543ADAE6A63F"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"1379","Ordinal":"1","Title":"CVE-2006-1379","CVE":"CVE-2006-1379","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"1379","Ordinal":"1","NoteData":"Trend Micro PC-cillin Internet Security 2006 14.00.1485 and 14.10.0.1023, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying executable programs such as (1) tmntsrv.exe and (2) tmproxy.exe.","Type":"Description","Title":"CVE-2006-1379"},{"CveYear":"2006","CveId":"1379","Ordinal":"2","NoteData":"2006-03-24","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"1379","Ordinal":"3","NoteData":"2009-02-26","Type":"Other","Title":"Modified"}]}}}