← Back

CVE-2006-1772

nvd nist
Published: Apr 13, 2006Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

debconf in Debian GNU/Linux, when configuring mnogosearch in the mnogosearch-common 3.2.31-1 package, uses the world-readable config.dat file instead of the restricted passwords.dat for storing the cleartext database administrator password in the mnogosearch-common/database_admin_pass record, which allows local users to view the password.

Affected (13)

Products: Debian: Debian Linux
1 product
Debian Linux
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1
Version 3.1

References (6)

Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.