{"api_version":"1","generated_at":"2026-07-23T11:09:57+00:00","cve":"CVE-2006-3675","urls":{"html":"https://cve.report/CVE-2006-3675","api":"https://cve.report/api/cve/CVE-2006-3675.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-3675","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-3675"},"summary":{"title":"CVE-2006-3675","description":"Password Safe 2.11, 2.16 and 3.0BETA1 does not respect the configuration settings for locking the password database when certain dialogue windows are open, which might allow attackers with physical access to obtain the database contents.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2006-07-28 22:04:00","updated_at":"2018-10-18 16:48:00"},"problem_types":["NVD-CWE-Other"],"metrics":[],"references":[{"url":"http://www.symantec.com/enterprise/research/SYMSA-2006-008.txt","name":"http://www.symantec.com/enterprise/research/SYMSA-2006-008.txt","refsource":"MISC","tags":["Exploit"],"title":"symantec.com has moved to broadcom.com","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://securityreason.com/securityalert/1308","name":"1308","refsource":"SREASON","tags":[],"title":"Password Safe - Lock Password Database Configuration Not Enforced - SecurityReason.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1016565","name":"1016565","refsource":"SECTRACK","tags":["Exploit"],"title":"Password Safe May Fail to Lock the Password Database - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/27933","name":"passwordsafe-lock-weak-security(27933)","refsource":"XF","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/441040/100/0/threaded","name":"20060721 SYMSA-2006-008:Password Safe - Lock Password Database Configuration Not Enforced","refsource":"BUGTRAQ","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/19078","name":"19078","refsource":"BID","tags":["Exploit"],"title":"Password Safe Local Insecure Idle Timeout Lock Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-3675","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-3675","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"3675","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"counterpane","cpe5":"passwordsafe","cpe6":"2.11","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3675","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"counterpane","cpe5":"passwordsafe","cpe6":"2.16","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3675","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"counterpane","cpe5":"passwordsafe","cpe6":"3.0beta1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3675","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"counterpane","cpe5":"passwordsafe","cpe6":"2.11","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3675","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"counterpane","cpe5":"passwordsafe","cpe6":"2.16","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3675","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"counterpane","cpe5":"passwordsafe","cpe6":"3.0beta1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-3675","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Password Safe 2.11, 2.16 and 3.0BETA1 does not respect the configuration settings for locking the password database when certain dialogue windows are open, which might allow attackers with physical access to obtain the database contents."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"19078","refsource":"BID","url":"http://www.securityfocus.com/bid/19078"},{"name":"1016565","refsource":"SECTRACK","url":"http://securitytracker.com/id?1016565"},{"name":"1308","refsource":"SREASON","url":"http://securityreason.com/securityalert/1308"},{"name":"http://www.symantec.com/enterprise/research/SYMSA-2006-008.txt","refsource":"MISC","url":"http://www.symantec.com/enterprise/research/SYMSA-2006-008.txt"},{"name":"passwordsafe-lock-weak-security(27933)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/27933"},{"name":"20060721 SYMSA-2006-008:Password Safe - Lock Password Database Configuration Not Enforced","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/441040/100/0/threaded"}]}},"nvd":{"publishedDate":"2006-07-28 22:04:00","lastModifiedDate":"2018-10-18 16:48:00","problem_types":["NVD-CWE-Other"],"metrics":{"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":2.1},"severity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:counterpane:passwordsafe:3.0beta1:*:*:*:*:*:*:*","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:counterpane:passwordsafe:2.16:*:*:*:*:*:*:*","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:counterpane:passwordsafe:2.11:*:*:*:*:*:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"3675","Ordinal":"19001","Title":"CVE-2006-3675","CVE":"CVE-2006-3675","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"3675","Ordinal":"1","NoteData":"Password Safe 2.11, 2.16 and 3.0BETA1 does not respect the configuration settings for locking the password database when certain dialogue windows are open, which might allow attackers with physical access to obtain the database contents.","Type":"Description","Title":null},{"CveYear":"2006","CveId":"3675","Ordinal":"2","NoteData":"2006-07-28","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"3675","Ordinal":"3","NoteData":"2018-10-18","Type":"Other","Title":"Modified"}]}}}