CVE-2006-0968

The ncprwsnt service in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to execute arbitrary code by modifying the connect.bat script, which is automatically executed by the service after a connection is established.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ncp_network_communications:secure_client:8.11_build_146:*:*:*:*:*:*:*

History

21 Nov 2024, 00:07

Type Values Removed Values Added
References () http://lists.grok.org.uk/pipermail/full-disclosure/2006-March/042640.html - () http://lists.grok.org.uk/pipermail/full-disclosure/2006-March/042640.html -
References () http://secunia.com/advisories/19082 - () http://secunia.com/advisories/19082 -
References () http://securityreason.com/securityalert/524 - () http://securityreason.com/securityalert/524 -
References () http://www.securityfocus.com/archive/1/426480/100/0/threaded - () http://www.securityfocus.com/archive/1/426480/100/0/threaded -
References () http://www.securityfocus.com/bid/16906 - () http://www.securityfocus.com/bid/16906 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/25251 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/25251 -

Information

Published : 2006-03-02 23:02

Updated : 2024-11-21 00:07


NVD link : CVE-2006-0968

Mitre link : CVE-2006-0968

CVE.ORG link : CVE-2006-0968


JSON object : View

Products Affected

ncp_network_communications

  • secure_client