7.2
CVSSv2

CVE-2006-2427

Published: 17/05/2006 Updated: 07/11/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

freshclam in (1) Clam Antivirus (ClamAV) 0.88 and (2) ClamXav 1.0.3h and previous versions does not drop privileges before processing the config-file command line option, which allows local users to read portions of arbitrary files when an error message displays the first line of the target file.

Vulnerable Product Search on Vulmon Subscribe to Product

clam anti-virus clamxav 1.0.3h

clam anti-virus clamav 0.88