CVE-2006-3878

Publication date

2006-07-27 00:00:00

Family

mitre

State

PUBLISHED

Description

Opsware Network Automation System (NAS) 6.0 installs /etc/init.d/mysql with insecure permissions, which allows local users to read the root password for the MySQL MAX database or gain privileges by modifying /etc/init.d/mysql.