CVE-2006-6477: Low severity Mandiant First Response vulnerability
FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and configured to use only HTTP, allows local users to modify requests and responses between a client and an agent by hijacking an HTTP FRAgent daemon and conducting a man-in-the-middle (MITM) attack.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6477?
CVE-2006-6477 has a medium severity level due to its potential for local exploitation and man-in-the-middle attacks.
How do I fix CVE-2006-6477?
To fix CVE-2006-6477, upgrade Mandiant First Response to version 1.1.1 or later and avoid running it in HTTP-only daemon mode.
What is affected by CVE-2006-6477?
CVE-2006-6477 affects Mandiant First Response versions prior to 1.1.1 when run in daemon mode using only HTTP.
What type of attack is facilitated by CVE-2006-6477?
CVE-2006-6477 facilitates man-in-the-middle (MITM) attacks by allowing local users to hijack the HTTP FRAgent daemon.
Who is primarily at risk from CVE-2006-6477?
Local users on systems running vulnerable versions of Mandiant First Response are primarily at risk from CVE-2006-6477.