First published: Tue Apr 25 2006(Updated: )
Unspecified vulnerability in Sybase Pylon Anywhere groupware synchronization server before 7.0 allows local users to obtain sensitive information such as email and PIM data of another user via unknown attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Sybase Adaptive Server Anywhere | =5.5.4 | |
SAP Sybase Adaptive Server Anywhere | =6.2.1 | |
SAP Sybase Adaptive Server Anywhere | =6.3.2 | |
SAP Sybase Adaptive Server Anywhere | =6.4.2 | |
SAP Sybase Adaptive Server Anywhere | =6.4.8 | |
SAP Sybase Adaptive Server Anywhere | =6.4.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1997 has a moderate severity level due to the potential exposure of sensitive user information.
Fixing CVE-2006-1997 involves upgrading to a newer version of Sybase Pylon Anywhere that is not affected by this vulnerability.
CVE-2006-1997 allows local users to access sensitive information such as email and personal information management data from other users.
CVE-2006-1997 affects Sybase Pylon Anywhere versions 5.5.4, 6.2.1, 6.3.2, 6.4.2, 6.4.8, and 6.4.9.
Local users of Sybase Pylon Anywhere are primarily affected, as they can exploit this vulnerability to access other users' sensitive data.