CVE-2006-0948: High severity AOL AOL vulnerability
AOL 9.0 Security Edition revision 4184.2340, and probably other versions, uses insecure permissions (Everyone/Full Control) for the "America Online 9.0" directory, which allows local users to gain privileges by replacing critical files.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0948?
CVE-2006-0948 has a moderate severity due to insecure permissions allowing local users to replace critical files.
How do I fix CVE-2006-0948?
To fix CVE-2006-0948, adjust the permissions of the 'America Online 9.0' directory to restrict access only to trusted users.
What software versions are affected by CVE-2006-0948?
CVE-2006-0948 affects AOL 9.0 Security Edition revision 4184.2340 and potentially other versions.
What can an attacker do with CVE-2006-0948?
An attacker can gain elevated privileges by replacing critical files in the 'America Online 9.0' directory.
Is CVE-2006-0948 a remote vulnerability?
CVE-2006-0948 is not a remote vulnerability; it requires local access to the affected system.