CVE-2006-7191: High severity LDAP Account Manager LDAP Account Manager vulnerability
Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-7191?
CVE-2006-7191 is considered a high severity vulnerability due to the potential for local users to gain elevated privileges.
How do I fix CVE-2006-7191?
To fix CVE-2006-7191, upgrade to LDAP Account Manager version 1.0.0 or later which addresses this vulnerability.
What type of vulnerability is CVE-2006-7191?
CVE-2006-7191 is classified as an untrusted search path vulnerability affecting a script in LDAP Account Manager.
Who is affected by CVE-2006-7191?
CVE-2006-7191 affects users of LDAP Account Manager versions prior to 1.0.0, particularly those with local access to the system.
What is the impact of exploiting CVE-2006-7191?
Exploiting CVE-2006-7191 allows local users to execute arbitrary commands as a privileged user, potentially leading to system compromise.