6.5
CVSSv2

CVE-2006-3147

Published: 22/06/2006 Updated: 20/07/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in Hosting Controller prior to 6.1 (aka Hotfix 3.2) allows remote authenticated malicious users to gain host admin privileges, list all resellers, or change resellers' passwords via unspecified vectors. NOTE: due to the lack of precise details, it is not clear whether this is related to a previously disclosed issue such as CVE-2005-1788.

Vulnerable Product Search on Vulmon Subscribe to Product

hosting controller hosting controller 6.1

hosting controller hosting controller 6.1_hotfix_1.4

hosting controller hosting controller 6.1_hotfix_2.9

hosting controller hosting controller 6.1_hotfix_2.3

hosting controller hosting controller 6.1_hotfix_2.8

hosting controller hosting controller 6.1_hotfix_1.7

hosting controller hosting controller 6.1_hotfix_1.9

hosting controller hosting controller 6.1_hotfix_2.0

hosting controller hosting controller 6.1_hotfix_2.1

Exploits

Title: An attacker can gain reseller privileges and after that can gain admin privileges Version: 61 Hotfix <= 31 Developer url: wwwHostingcontrollercom Solution: Update to Hotfix 32 Discover date: 2005,Summer Report date (to hc company): Sat Jun 10, 2006 Publish date (in security forums): Thu July 06, 2006 -------------------------------- ...