Unrated severityNVD Advisory· Published Jun 22, 2006· Updated Apr 16, 2026
CVE-2006-3159
CVE-2006-3159
Description
pipe_master in Sun ONE/iPlanet Messaging Server 5.2 HotFix 1.16 (built May 14 2003) allows local users to read portions of restricted files via a symlink attack on msg.conf in a directory identified by the CONFIGROOT environment variable, which returns the first line of the file in an error message.
Affected products
2- cpe:2.3:a:sun:iplanet_messaging_server:5.2:*:*:*:*:*:*:*
- cpe:2.3:a:sun:one_messaging_server:5.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- lists.grok.org.uk/pipermail/full-disclosure/2006-June/046920.htmlnvd
- secunia.com/advisories/20919nvd
- securitytracker.com/idnvd
- securitytracker.com/idnvd
- sunsolve.sun.com/search/document.donvd
- www.securityfocus.com/bid/18749nvd
- www.vupen.com/english/advisories/2006/2633nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/27220nvd
News mentions
0No linked articles in our index yet.