CVE-2006-6131: Medium severity kerio webstar vulnerability
Untrusted search path vulnerability in (1) WSAdminServer and (2) WSWebServer in Kerio WebSTAR (4D WebSTAR Server Suite) 5.4.2 and earlier allows local users with webstar privileges to gain root privileges via a malicious libucache.dylib helper library in the current working directory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6131?
CVE-2006-6131 has a high severity rating due to the potential for local users to gain root privileges.
How do I fix CVE-2006-6131?
To fix CVE-2006-6131, upgrade to a version of Kerio WebSTAR that is later than 5.4.2.
Who is affected by CVE-2006-6131?
Local users with webstar privileges are affected by CVE-2006-6131.
What are the potential risks associated with CVE-2006-6131?
The risks include unauthorized access to sensitive system functions and data, potentially leading to system compromise.
What is the nature of the vulnerability in CVE-2006-6131?
CVE-2006-6131 is an untrusted search path vulnerability that allows local exploitation through a malicious helper library.