CVE-2006-6875
UnknownEPSS 2.87%
Last modified
CVE-2006-6875 is a vulnerability of currently unknown severity. Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earlier allows remote attackers to execute arbitrary code via a crafted OSP header.. EPSS estimates a 2.87% chance of exploitation in the next 30 days.
Description
Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earlier allows remote attackers to execute arbitrary code via a crafted OSP header.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Openser | Openser | <= 1.1.0 |
| Openser | Openser Osp Module | <= 1.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-6875?
Buffer overflow in the validateospheader function in the Open Settlement Protocol (OSP) module in OpenSER 1.1.0 and earlier allows remote attackers to execute arbitrary code via a crafted OSP header.
How severe is CVE-2006-6875?
Severity scoring for CVE-2006-6875 is pending analysis. The EPSS model estimates a 2.87% probability of exploitation in the next 30 days.
How do I fix CVE-2006-6875?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2006
- CVE-2006-6869Directory traversal vulnerability in includes/search/search_…
- CVE-2006-6870The consume_labels function in avahi-core/dns.c in Avahi bef…
- CVE-2006-6871Multiple cross-site scripting (XSS) vulnerabilities in eNdon…
- CVE-2006-6872Directory traversal vulnerability in mod.php in eNdonesia 8.…
- CVE-2006-6873Multiple SQL injection vulnerabilities in mod.php in eNdones…
- CVE-2006-6874Multiple cross-site scripting (XSS) vulnerabilities in frien…
- CVE-2006-6876Buffer overflow in the fetchsms function in the SMS handling…
- CVE-2006-6877Directory traversal vulnerability in index.php in Matteo Luc…
- CVE-2006-6878admin/uploads.php in PHP-Update 2.7 and earlier allows remot…
- CVE-2006-6879Unrestricted file upload vulnerability in admin/uploads.php …
- CVE-2006-6880Multiple SQL injection vulnerabilities in code/guestadd.php …
- CVE-2006-6881Buffer overflow in the Get_Wep function in cofvnet.c for ATM…
Are you affected by CVE-2006-6875?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
