MEDIUM · 4.0

CVE-2006-0174

Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to obtain sensitive information (intranet IP addresses and enumerations of valid parameter...

Vulnerability Description

Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to obtain sensitive information (intranet IP addresses and enumerations of valid parameter values) via a direct request to hc, which reveals the information in an error message or a cookie.

CVSS Score

4.0

MEDIUM

AV:N/AC:L/Au:S/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
HummingbirdCollaboration<= 5.21
HummingbirdEnterprise Collaboration<= 5.21

References

FAQ

What is CVE-2006-0174?

CVE-2006-0174 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to obtain sensitive information (intranet IP addresses and enumerations of valid parameter...

How severe is CVE-2006-0174?

CVE-2006-0174 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-0174?

Check the references section above for vendor advisories and patch information. Affected products include: Hummingbird Collaboration, Hummingbird Enterprise Collaboration.