CVE-2006-5019: Medium severity google mini search appliance vulnerability
Published Sep 27, 2006
·Updated
Google Mini 4.4.102.M.36 and earlier allows remote attackers to obtain sensitive information via a direct request for /search with an invalid client parameter, which reveals the path in an error message.
Affected Software
1 affected component
Google Mini Search Appliance<=4.4.102.m.36
Event History
Sep 27, 2006
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Data Sourced
via NVD·11:07 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-5019?
CVE-2006-5019 has a critical severity rating due to the potential exposure of sensitive information.
2
How do I fix CVE-2006-5019?
The fix for CVE-2006-5019 involves upgrading the Google Mini Search Appliance to version 4.4.102.M.37 or later.
3
Who is affected by CVE-2006-5019?
CVE-2006-5019 affects users of Google Mini Search Appliance versions 4.4.102.M.36 and earlier.
4
What type of attack does CVE-2006-5019 enable?
CVE-2006-5019 enables remote attackers to exploit the vulnerability to capture sensitive data through error messages.
5
Is CVE-2006-5019 a remote vulnerability?
Yes, CVE-2006-5019 is a remote vulnerability that can be exploited without physical access to the device.