Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-3495

EPSS 0.07% · P22
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-3495

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
AFP Server in Apple Mac OS X 10.3.9 and 10.4.7 stores reconnect keys in a world-readable file, which allows local users to obtain the keys and access files and folders of other users.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apple Mac AFP Server连接文件共享会话本地用户安全权限漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apple Mac OS X是苹果家族机器所使用的操作系统。 最新的Mac OS X更新修复了多个漏洞,具体如下: 在Mac OS X Server上,AFP Server支持在网络断开后重新连接文件共享会话。重新连接密钥的存储是完全可读的,因此通过认证的本地用户就可以读取该密钥,扮演为AFP上的其他用户,并以所扮演用户的权限访问文件或文件夹。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-3495

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-3495

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-08-02 · 8 CVEs total

CVE-2006-1472AFP Server 无权访问文件和文件夹信息泄露漏洞
CVE-2006-1473Apple Mac OS AFP Server中的整数溢出漏洞
CVE-2006-3496Apple Mac OS AFP Server中拒绝服务漏洞
CVE-2006-3497Apple Mac OS Bom的压缩状态特制的Zip文档任意代码执行漏洞
CVE-2006-3498Apple Mac OS bootpd的请求栈溢出漏洞
CVE-2006-3971Scott Weedon Ajax Chat 'chat.php'跨站脚本攻击(XSS)漏洞
CVE-2006-3972Scott Weedon Ajax Chat 'operator_chattranscript.php'目录遍历漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2006-3495

No comments yet


Leave a comment