Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2006-0376

Quick assessment

Affected
n/a n/a
Exploitation
High exploitation probability; assess promptly
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

包括Windows 2000、Windows XP和Windows Server 2003在内的某些操作系统中的802.11无线客户机,在发生以下情况时不会警告用户:(1)以特殊(也称为点对点对等)模式建立与站的关联,或(2)处于特殊模式的站与该客户机建立关联,这可让远程攻击者使非预期的无线通讯发生作用。

AI Predicted 5.9 Difficulty: Easy EPSS 18.25% · P97
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2006-0376

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
The 802.11 wireless client in certain operating systems including Windows 2000, Windows XP, and Windows Server 2003 does not warn the user when (1) it establishes an association with a station in ad hoc (aka peer-to-peer) mode or (2) a station in ad hoc mode establishes an association with it, which allows remote attackers to put unexpected wireless communication into place.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Windows 系列版本802.11无线客户机安全警告漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
包括Windows 2000、Windows XP和Windows Server 2003在内的某些操作系统中的802.11无线客户机,在发生以下情况时不会警告用户:(1)以特殊(也称为点对点对等)模式建立与站的关联,或(2)处于特殊模式的站与该客户机建立关联,这可让远程攻击者使非预期的无线通讯发生作用。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2006-0376

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-0376

请登录查看更多情报信息。

Vendor Advisories for CVE-2006-0376 (3)

Other References for CVE-2006-0376 (4)

Same Patch Batch · n/a · 2006-01-22 · 24 CVEs total

CVE-2006-0365 XMB 跨站脚本攻击漏洞
CVE-2006-0353 LSH 访问验证错误
CVE-2006-0375 ACT P202S VOIP WIFI Phones未明漏洞
CVE-2006-0374 ACT P202S VOIP WIFI Phones多个远程漏洞
CVE-2006-0373 Douran FollowWeb Portal Register.ASPX 跨站脚本攻击漏洞
CVE-2006-0372 BlogPHP多个SQL注入漏洞
CVE-2006-0371 RCBlog Index.PHP目录遍历漏洞
CVE-2006-0370 Noah Medling RCBlog 安全访问控制漏洞
CVE-2006-0369 MySQL 查询返回创建VIEW查询敏感信息泄露漏洞
CVE-2006-0368 Cisco Call Manager端口管理拒绝服务漏洞
CVE-2006-0367 Cisco CallManager CCMAdmin远程权限提升漏洞
CVE-2006-0366 Phpclanwebsite BBCode IMG 跨站脚本攻击漏洞
CVE-2006-0354 Cisco Aironet无线接入点ARP攻击拒绝服务漏洞
CVE-2006-0364 MyBB Signature 跨站脚本攻击漏洞
CVE-2006-0363 MSN Messenger CryptUnprotectData程序原始密码获取漏洞
CVE-2006-0362 3Com TippingPoint IPS远程未指定的拒绝服务漏洞
CVE-2006-0361 Bit 5 Blog AddComment.PHP 跨站脚本攻击漏洞
CVE-2006-0360 MPM HP-180W VOIP WIFI Phone信息泄露漏洞
CVE-2006-0359 CounterPath eyeBeam SIP首部数据远程溢出漏洞
CVE-2006-0358 PowerPortal 多个SQL注入漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-0376

No comments yet


Leave a comment