← back
CVE-2006-6652

CVE-2006-6652

28Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 20%
from disclosure to weapon0 days
Published on NVDDec 20
1st PoCNov 30
exploitation probability
20%top 3% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple Mac OS X before 2007-004, as used by the FTP daemon and tnftpd, allows remote authenticated users to execute arbitrary code via a long pathname that results from path expansion.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.