CVE-2006-6346: Critical severity sap internet graphics server vulnerability
Unspecified vulnerability in SAP Internet Graphics Service (IGS) 6.40 Patchlevel 15 and earlier, and 7.00 Patchlevel 3 and earlier, allows remote attackers to cause a denial of service (service shutdown), obtain sensitive information (configuration files), and conduct certain other unauthorized activities, related to "Undocumented Features." NOTE: it is possible that there are multiple issues. This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended. This is likely a different issue than CVE-2006-4134.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6346?
CVE-2006-6346 has been classified as a significant vulnerability that could result in denial of service and unauthorized access to sensitive information.
How do I fix CVE-2006-6346?
To remediate CVE-2006-6346, upgrade SAP Internet Graphics Service to version 6.40 Patchlevel 16 or 7.00 Patchlevel 4 or later.
What are the consequences of exploiting CVE-2006-6346?
Exploiting CVE-2006-6346 can lead to service shutdown and exposure of sensitive configuration files.
Which versions of SAP Internet Graphics Service are affected by CVE-2006-6346?
CVE-2006-6346 affects SAP Internet Graphics Service versions 6.40 Patchlevel 15 and earlier, and 7.00 Patchlevel 3 and earlier.
Can CVE-2006-6346 lead to unauthorized access?
Yes, CVE-2006-6346 can enable attackers to obtain sensitive information and perform unauthorized actions.