← All CVEs

CVE-2006-3961

medium · 6.8

Buffer overflow in McSubMgr ActiveX control (mcsubmgr.dll) in McAfee Security Center 6.0.23 for Internet Security Suite 2006, Wireless Home Network Security, Personal Firewall Plus, VirusScan, Privacy Service, SpamKiller, AntiSpyware, and QuickClean allows remote user-assisted attackers to execute arbitrary commands via long string parameters, which are later used in vsprintf.

6.8
CVSS
34.4%
EPSS (exploit prob.)
98th
EPSS percentile
2006-08-01
Published

AV:N/AC:M/Au:N/C:P/I:P/A:P

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
mcafeeantispyware2005
mcafeeantispyware2006
mcafeeinternet_security_suite2004
mcafeeinternet_security_suite2005
mcafeeinternet_security_suite2006
mcafeepersonal_firewall_plus2004
mcafeepersonal_firewall_plus2005
mcafeepersonal_firewall_plus2006
mcafeeprivacy_service2004
mcafeeprivacy_service2005
mcafeeprivacy_service2006
mcafeequickclean2004
mcafeequickclean2005
mcafeequickclean2006
mcafeesecurity_center4.3
mcafeesecurity_center6.0
mcafeesecurity_center6.0.22
mcafeesecurity_center6.0.23
mcafeespamkiller5.0
mcafeespamkiller6.0
mcafeespamkiller7.0
mcafeevirusscan2004
mcafeevirusscan2005
mcafeevirusscan2006
mcafeewireless_home_network_security2006

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-3961