CVE-2006-5213
published 2006-10-10CVE-2006-5213: Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept or spoof packets by creating a raw…
PriorityP47low3.6CVSS 2.0
AVLACLAuNCPIPAN
EPSS
0.34%
26.0th percentile
Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept or spoof packets by creating a raw socket on a link aggregation (network device aggregation).
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | solaris | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Sun Solaris 10.0 Permission Check authentication spoofing (Nessus ID 21792 / XFDB-29381)
vuldb·2026-04-24·CVSS 3.6
CVE-2006-5213 [LOW] Sun Solaris 10.0 Permission Check authentication spoofing (Nessus ID 21792 / XFDB-29381)
A vulnerability was found in Sun Solaris 10.0 and classified as problematic. The impacted element is an unknown function of the component Permission Check. Such manipulation leads to authentication bypass by spoofing.
This vulnerability is documented as CVE-2006-5213. The attack needs to be performed locally. There is not any exploit available.
It is suggested to upgrade the affected component.
GHSA
GHSA-hxwq-r5mv-x85f: Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept or spoof packets by creating a
ghsa_unreviewed·2022-05-01
CVE-2006-5213 [LOW] GHSA-hxwq-r5mv-x85f: Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept or spoof packets by creating a
Sun Solaris 10 before 20061006 uses "incorrect and insufficient permission checks" that allow local users to intercept or spoof packets by creating a raw socket on a link aggregation (network device aggregation).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/22246http://secunia.com/advisories/22992http://securitytracker.com/id?1017013http://sunsolve.sun.com/search/document.do?assetkey=1-26-102606-1http://support.avaya.com/elmodocs2/security/ASA-2006-250.htmhttp://www.securityfocus.com/bid/20377http://www.vupen.com/english/advisories/2006/3961https://exchange.xforce.ibmcloud.com/vulnerabilities/29381http://secunia.com/advisories/22246http://secunia.com/advisories/22992http://securitytracker.com/id?1017013http://sunsolve.sun.com/search/document.do?assetkey=1-26-102606-1http://support.avaya.com/elmodocs2/security/ASA-2006-250.htmhttp://www.securityfocus.com/bid/20377http://www.vupen.com/english/advisories/2006/3961https://exchange.xforce.ibmcloud.com/vulnerabilities/29381
2006-10-10
Published