First published: Sat Sep 09 2006(Updated: )
Panda Platinum Internet Security 2006 10.02.01 and 2007 11.00.00 uses sequential message numbers in generated URLs that are not filtered if the user replies to a message, which might allow remote attackers to determine mail usage patterns.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Panda Panda Platinum 2007 Internet Security | =2006_10.02.01 | |
Panda Panda Platinum 2007 Internet Security | =2007_11.00.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The risks include potential remote attacks that can expose mail usage patterns due to unfiltered sequential message numbers.
To mitigate CVE-2006-4658, update Panda Platinum Internet Security to the latest version that addresses this vulnerability.
CVE-2006-4658 affects Panda Platinum Internet Security versions 2006 10.02.01 and 2007 11.00.00.
CVE-2006-4658 is considered a moderate risk vulnerability due to potential information disclosure.
It is not recommended to continue using affected versions of Panda Platinum Internet Security without applying the necessary updates.