CVE-2006-4186Edirectory vulnerability

3 documents3 sources
Severity
2.1LOWNVD
EPSS
0.1%
top 80.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 17
Latest updateMay 1

Description

The iManager in eMBoxClient.jar in Novell eDirectory 8.7.3.8 writes passwords in plaintext to a log file, which allows local users to obtain passwords by reading the file.

CVSS vector

AV:L/AC:L/C:P/I:N/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages1 packages

NVDnovell/edirectory8.7.3.8

Patches

🔴Vulnerability Details

2
GHSA
GHSA-jqpw-3rvv-hv9w: The iManager in eMBoxClient2022-05-01
CVEList
CVE-2006-4186: The iManager in eMBoxClient2006-08-17
CVE-2006-4186 — Novell Edirectory vulnerability | cvebase