CVE-2006-2612: Low severity novell client vulnerability
Novell Client for Windows 4.8 and 4.9 does not restrict access to the clipboard contents while a machine is locked, which allows users with physical access to read the current clipboard contents by pasting them into the "User Name" field on the login prompt.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-2612?
CVE-2006-2612 has a medium severity rating due to the risk of unauthorized access to clipboard contents on physically accessible locked machines.
How do I fix CVE-2006-2612?
To fix CVE-2006-2612, upgrade to a later version of the Novell Client that addresses clipboard access issues.
What versions of Novell Client are affected by CVE-2006-2612?
CVE-2006-2612 affects Novell Client for Windows versions 4.8 and 4.9.
Can CVE-2006-2612 lead to data leakage?
Yes, CVE-2006-2612 can lead to data leakage, as an attacker with physical access can view sensitive information stored in the clipboard.
Is physical access required to exploit CVE-2006-2612?
Yes, physical access to the machine is required to exploit the vulnerability described in CVE-2006-2612.