CVE-2006-4316

UnknownEPSS 0.35%

Last modified

CVE-2006-4316 is a vulnerability of currently unknown severity. SSH Tectia Management Agent 2.1.2 allows local users to gain root privileges by running a program called sshd, which is obtained from a process listing when the "Restart" action is selected from the Management server GUI, which causes the agent to locate the pathname of the user's program and restart it with root privileges.. EPSS estimates a 0.35% chance of exploitation in the next 30 days.

Description

SSH Tectia Management Agent 2.1.2 allows local users to gain root privileges by running a program called sshd, which is obtained from a process listing when the "Restart" action is selected from the Management server GUI, which causes the agent to locate the pathname of the user's program and restart it with root privileges.

Metrics

EPSS Probability
0.35%

26.5th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
SshTectia Manager1.2
SshTectia Manager1.3
SshTectia Manager1.4
SshTectia Manager2.0
SshTectia Manager2.1.2

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2006-4316?
SSH Tectia Management Agent 2.1.2 allows local users to gain root privileges by running a program called sshd, which is obtained from a process listing when the "Restart" action is selected from the Management server GUI, which causes the agent to locate the pathname of the user's program and restart it with root privileges.
How severe is CVE-2006-4316?
Severity scoring for CVE-2006-4316 is pending analysis. The EPSS model estimates a 0.35% probability of exploitation in the next 30 days.
How do I fix CVE-2006-4316?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2006-4316?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST