MEDIUM · 4.6

CVE-2006-2443

The Debian package of knowledgetree 2.0.7 creates environment.php with world-readable permissions, which allows local users to obtain sensitive information such as the username and password for the Kn...

Vulnerability Description

The Debian package of knowledgetree 2.0.7 creates environment.php with world-readable permissions, which allows local users to obtain sensitive information such as the username and password for the KnowledgeTree database.

CVSS Score

4.6

MEDIUM

AV:L/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
KnowledgetreeKnowledgetree2.0.7

References

FAQ

What is CVE-2006-2443?

CVE-2006-2443 is a vulnerability with a CVSS score of 4.6 (MEDIUM). The Debian package of knowledgetree 2.0.7 creates environment.php with world-readable permissions, which allows local users to obtain sensitive information such as the username and password for the Kn...

How severe is CVE-2006-2443?

CVE-2006-2443 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-2443?

Check the references section above for vendor advisories and patch information. Affected products include: Knowledgetree Knowledgetree.