{"api_version":"1","generated_at":"2026-07-23T10:01:43+00:00","cve":"CVE-2006-3217","urls":{"html":"https://cve.report/CVE-2006-3217","api":"https://cve.report/api/cve/CVE-2006-3217.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-3217","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-3217"},"summary":{"title":"CVE-2006-3217","description":"JaguarEditControl (JEdit) ActiveX Control 1.1.0.20 and earlier allows remote attackers to obtain sensitive information, such as the username and MAC and IP addresses, by setting the test field to certain values such as 2404 or 2790, then reading the information from the .JText field.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2006-06-24 01:06:00","updated_at":"2018-10-18 16:46:00"},"problem_types":["NVD-CWE-Other"],"metrics":[],"references":[{"url":"http://www.srlabs.net/bulten/JaguarEdit_2.htm","name":"http://www.srlabs.net/bulten/JaguarEdit_2.htm","refsource":"MISC","tags":["Exploit","Vendor Advisory"],"title":"","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://securityreason.com/securityalert/1145","name":"1145","refsource":"SREASON","tags":[],"title":"CXSecurity - IDS","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2006/2489","name":"ADV-2006-2489","refsource":"VUPEN","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.srlabs.net/bulten/source/Jaguar.htm","name":"http://www.srlabs.net/bulten/source/Jaguar.htm","refsource":"MISC","tags":[],"title":"","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/18576","name":"18576","refsource":"BID","tags":["Exploit"],"title":"JaguarEdit ActiveX Control Information Disclosure Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/20759","name":"20759","refsource":"SECUNIA","tags":["Exploit","Vendor Advisory"],"title":"JaguarEditControl ActiveX Control Information Disclosure - Secunia Advisories - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/437937/100/0/threaded","name":"20060621 JEdit ActiveX Control Information Disclosure vulnerability","refsource":"BUGTRAQ","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/27290","name":"jedit-unspecified-information-disclosure(27290)","refsource":"XF","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-3217","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-3217","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"3217","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jaguarsoft","cpe5":"jaguaredit","cpe6":"1.1.0.18","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3217","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jaguarsoft","cpe5":"jaguaredit","cpe6":"1.1.0.19","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3217","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jaguarsoft","cpe5":"jaguaredit","cpe6":"1.1.0.18","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3217","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jaguarsoft","cpe5":"jaguaredit","cpe6":"1.1.0.19","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3217","vulnerable":"1","versionEndIncluding":"1.1.0.20","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"jaguarsoft","cpe5":"jaguaredit","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-3217","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"JaguarEditControl (JEdit) ActiveX Control 1.1.0.20 and earlier allows remote attackers to obtain sensitive information, such as the username and MAC and IP addresses, by setting the test field to certain values such as 2404 or 2790, then reading the information from the .JText field."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"18576","refsource":"BID","url":"http://www.securityfocus.com/bid/18576"},{"name":"20759","refsource":"SECUNIA","url":"http://secunia.com/advisories/20759"},{"name":"ADV-2006-2489","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/2489"},{"name":"http://www.srlabs.net/bulten/JaguarEdit_2.htm","refsource":"MISC","url":"http://www.srlabs.net/bulten/JaguarEdit_2.htm"},{"name":"http://www.srlabs.net/bulten/source/Jaguar.htm","refsource":"MISC","url":"http://www.srlabs.net/bulten/source/Jaguar.htm"},{"name":"1145","refsource":"SREASON","url":"http://securityreason.com/securityalert/1145"},{"name":"jedit-unspecified-information-disclosure(27290)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/27290"},{"name":"20060621 JEdit ActiveX Control Information Disclosure vulnerability","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/437937/100/0/threaded"}]}},"nvd":{"publishedDate":"2006-06-24 01:06:00","lastModifiedDate":"2018-10-18 16:46:00","problem_types":["NVD-CWE-Other"],"metrics":{"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":2.6},"severity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:jaguarsoft:jaguaredit:1.1.0.19:*:*:*:*:*:*:*","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:jaguarsoft:jaguaredit:*:*:*:*:*:*:*:*","versionEndIncluding":"1.1.0.20","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:jaguarsoft:jaguaredit:1.1.0.18:*:*:*:*:*:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"3217","Ordinal":"18542","Title":"CVE-2006-3217","CVE":"CVE-2006-3217","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"3217","Ordinal":"1","NoteData":"JaguarEditControl (JEdit) ActiveX Control 1.1.0.20 and earlier allows remote attackers to obtain sensitive information, such as the username and MAC and IP addresses, by setting the test field to certain values such as 2404 or 2790, then reading the information from the .JText field.","Type":"Description","Title":null},{"CveYear":"2006","CveId":"3217","Ordinal":"2","NoteData":"2006-06-23","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"3217","Ordinal":"3","NoteData":"2018-10-18","Type":"Other","Title":"Modified"}]}}}