📦

portable_runtime_api

Vendor: netscape

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 11.38% Exploit Prob.
Latest CVE CVE-2006-4842 Oct 12

Security Vulnerability Index

Page 1 / 1
3.6 CVSS
CVE-2006-4842
Exploit Found

The Netscape Portable Runtime (NSPR) API 4.6.1 and 4.6.2, as used in Sun Solaris 10, trusts user-specified environment variables for specifying log files even when running from setuid programs, which allows local users to create or overwrite arbitrary files.

EPSS: 11.38%