Back to Database
Status published
Critical
CVE-2006-0864
filescan in Global Hauri ViRobot 2.0 20050817 does not verify...
Vulnerability Description
filescan in Global Hauri ViRobot 2.0 20050817 does not verify the Cookie HTTP header, which allows remote attackers to gain administrative privileges via an arbitrary cookie value.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-0864
Credits & Attribution
No credits recorded in the NVD database.
References
- http://securitytracker.com/id?1015658
- http://www.securityfocus.com/bid/16768
- http://www.vupen.com/english/advisories/2006/0691
- http://x82.inetcop.org/h0me/adv1sor1es/INCSA.2006-0x82-028-VIROBOT.txt
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24850
- http://www.securityfocus.com/archive/1/425788/100/0/threaded
- http://secunia.com/advisories/18974
More from hauri
View All →CVE-2009-4476
Stack-based buffer overflow in HAURI ViRobot Desktop 5.5 before 2009-09-28.00...
Critical
10
CVE-2008-5547
HAURI ViRobot 2008.12.4.1499 and possibly 2008.9.12.1375, when Internet Explorer 6...
Critical
9.3
CVE-2005-4786
Buffer overflow in the archive decompression library (vrAZMain.dll 5.8.22.137), as...
Medium
4
CVE-2005-2720
Stack-based buffer overflow in the ACE archive decompression library (vrAZace.dll)...
High
7.5
CVE-2005-2670
Directory traversal vulnerability in HAURI Anti-Virus products including ViRobot Expert...
Medium
5
Affected Vendor
hauri
View all reports →Affected Software
virobot
Vulnerable Versions:
2.0_2005-08-17
Timeline
Official Publish:
February 23rd, 2006
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.