CVE-2006-1285

Symantec Ghost <8.2 - SQL Injection

Title source: llm
STIX 2.1

Description

SQLAnywhere in Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, gives read and write permissions to all users for database shared memory sections, which allows local users to access and possibly modify certain information.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015733
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/19171
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17019
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0870

Scores

EPSS 0.0016
EPSS Percentile 36.7%

Details

Status published
Products (3)
symantec/ghost_solutions_suite 1.0
symantec/norton_ghost 8.0
symantec/norton_ghost 8.2
Published Mar 19, 2006
Tracked Since Feb 18, 2026