CVE-2006-6477

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/12/2006
Last modified:
17/10/2018

Description

FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and configured to use only HTTP, allows local users to modify requests and responses between a client and an agent by hijacking an HTTP FRAgent daemon and conducting a man-in-the-middle (MITM) attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mandiant:first_response:*:*:*:*:*:*:*:* 1.1 (including)