CVE-2006-1836

3 documents3 sources
Severity
6.8MEDIUM
EPSS
0.1%
top 81.18%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 19
Latest updateMay 1

Description

Untrusted search path vulnerability in unspecified components in Symantec LiveUpdate for Macintosh 3.0.0 through 3.5.0 do not set the execution path, which allows local users to gain privileges via a Trojan horse program.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.1 | Impact: 10.0

Affected Packages6 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-q73f-wrp7-jcr3: Untrusted search path vulnerability in unspecified components in Symantec LiveUpdate for Macintosh 32022-05-01
CVEList
CVE-2006-1836: Untrusted search path vulnerability in unspecified components in Symantec LiveUpdate for Macintosh 32006-04-19