CVE-2006-4315: High severity SSH Tectia Client vulnerability
Unquoted Windows search path vulnerability in multiple SSH Tectia products, including Client/Server/Connector 5.0.0 and 5.0.1 and Client/Server before 4.4.5, and Manager 2.12 and earlier, when running on Windows, might allow local users to gain privileges via a malicious program file under "Program Files" or its subdirectories.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4315?
CVE-2006-4315 has a severity level that can lead to local privilege escalation for users on affected systems.
How do I fix CVE-2006-4315?
To fix CVE-2006-4315, it is recommended to update to the latest versions of SSH Tectia products that address this vulnerability.
Which SSH Tectia products are affected by CVE-2006-4315?
CVE-2006-4315 affects multiple SSH Tectia products, including Client/Server versions 5.0.0, 5.0.1, as well as earlier versions before 4.4.5.
Can local users exploit CVE-2006-4315?
Yes, local users can exploit CVE-2006-4315 by placing a malicious program file in the unquoted search path.
Is CVE-2006-4315 specific to a particular operating system?
CVE-2006-4315 specifically impacts SSH Tectia products when they are running on Windows environments.