CVE-2006-4013: Path Traversal
Multiple directory traversal vulnerabilities in Symantec Brightmail AntiSpam (SBAS) before 6.0.4, when the Control Center is allowed to connect from any computer, allow remote attackers to read and overwrite certain files via directory traversal sequences in (1) DATABLOB-GET and (2) DATABLOB-SAVE requests.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4013?
CVE-2006-4013 has a medium severity rating due to its ability to allow unauthorized remote file access.
How do I fix CVE-2006-4013?
To mitigate CVE-2006-4013, upgrade to Symantec Brightmail AntiSpam version 6.0.4 or later.
What systems are affected by CVE-2006-4013?
CVE-2006-4013 affects Symantec Brightmail AntiSpam versions 4.0, 5.5, and 6.0 up to 6.0.3.
What are the implications of CVE-2006-4013?
Exploitation of CVE-2006-4013 can allow attackers to read and overwrite critical files on the affected systems.
Is CVE-2006-4013 still a concern today?
While CVE-2006-4013 was reported in 2006, it can still pose a risk for users of outdated versions of Symantec Brightmail AntiSpam.