CVE-2006-3878

Opsware Network Automation System (NAS) 6.0 installs /etc/init.d/mysql with insecure permissions, which allows local users to read the root password for the MySQL MAX database or gain privileges by modifying /etc/init.d/mysql.
Configurations

Configuration 1 (hide)

cpe:2.3:a:opsware:network_automation_system:6.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:14

Type Values Removed Values Added
References () http://secunia.com/advisories/21192 - () http://secunia.com/advisories/21192 -
References () http://securityreason.com/securityalert/1289 - () http://securityreason.com/securityalert/1289 -
References () http://securitytracker.com/id?1016566 - () http://securitytracker.com/id?1016566 -
References () http://www.securityfocus.com/archive/1/441024/100/0/threaded - () http://www.securityfocus.com/archive/1/441024/100/0/threaded -
References () http://www.securityfocus.com/archive/1/441296/100/0/threaded - () http://www.securityfocus.com/archive/1/441296/100/0/threaded -
References () http://www.securityfocus.com/archive/1/444223/100/0/threaded - () http://www.securityfocus.com/archive/1/444223/100/0/threaded -
References () http://www.securityfocus.com/bid/19126 - () http://www.securityfocus.com/bid/19126 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/27995 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/27995 -

Information

Published : 2006-07-27 01:04

Updated : 2025-04-03 01:03


NVD link : CVE-2006-3878

Mitre link : CVE-2006-3878

CVE.ORG link : CVE-2006-3878


JSON object : View

Products Affected

opsware

  • network_automation_system