CVE-2006-6476 Information
Feb 14, 2021
cve
Description
FRAgent.exe in Mandiant First Response (MFR) before 1.1.1 when run in daemon mode and when the agent is bound to 0.0.0.0 (all interfaces) opens sockets in non-exclusive mode which allows local users to hijack the socket and capture data or cause a denial of service (loss of daemon operation).
Reference
http://secunia.com/advisories/23393 http://securityreason.com/securityalert/2052 http://securitytracker.com/id?1017394 http://www.mandiant.com/firstresponse.htm http://www.securityfocus.com/archive/1/454712/100/0/threaded http://www.securityfocus.com/bid/21548 http://www.symantec.com/enterprise/research/SYMSA-2006-013.txt http://www.vupen.com/english/advisories/2006/5061
Share on: