VulnerabilityModified
CVE-2006-6510
An unspecified ActiveX control in SiteKiosk before 6.5.150 is installed "safe for scripting", which allows local users to bypass security protections and read arbitrary files via certain functions.
LOW 1.7EPSS 0.32%
Does this matter?
Lower severity and a low EPSS score (0.32%). Track it; it rarely justifies an emergency change on its own.
Description
An unspecified ActiveX control in SiteKiosk before 6.5.150 is installed "safe for scripting", which allows local users to bypass security protections and read arbitrary files via certain functions.
- CVSS 2.0
- 1.7 LOWAV:L/AC:L/Au:S/C:P/I:N/A:N
- EPSS
- 0.32% probability · 25th percentile
- CISA KEV
- Not listed
- Affected
- sitekiosk/sitekiosk
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/23253
- http://www.securityfocus.com/archive/1/454185/100/0/threaded
- http://www.securityfocus.com/bid/21567Patch
- http://www.sitekiosk.com/th_support/versions/index.php3?id=39Patch
- http://www.vupen.com/english/advisories/2006/4985
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30878
- http://secunia.com/advisories/23253
- http://www.securityfocus.com/archive/1/454185/100/0/threaded
- http://www.securityfocus.com/bid/21567Patch
- http://www.sitekiosk.com/th_support/versions/index.php3?id=39Patch
- http://www.vupen.com/english/advisories/2006/4985
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30878
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.