Vulnerabilities > CVE-2006-1198 - Unspecified vulnerability in Comvigo IM Lock Home2006/Professional2006
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Comvigo IM Lock 2006 uses a simple substitution cipher to encrypt a password stored in the msnvs\prc registry value, for which all users have Read permission, which allows local users to bypass the product's blocking functionality by decrypting the password.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
References
- http://secunia.com/advisories/19140
- http://secunia.com/advisories/19140
- http://www.securityfocus.com/archive/1/426935/100/0/threaded
- http://www.securityfocus.com/archive/1/426935/100/0/threaded
- http://www.securityfocus.com/bid/16988
- http://www.securityfocus.com/bid/16988
- http://www.vupen.com/english/advisories/2006/0866
- http://www.vupen.com/english/advisories/2006/0866
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25219
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25219