VYPR

First Response

by Mandiant

CVEs (3)

  • CVE-2006-6476Dec 20, 2006
    risk 0.00cvss epss 0.00

    FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and when the agent is bound to 0.0.0.0 (all interfaces), opens sockets in non-exclusive mode, which allows local users to hijack the socket, and capture data or cause a denial of service (loss of…

  • CVE-2006-6475Dec 20, 2006
    risk 0.00cvss epss 0.02

    FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode with SSL enabled, allows remote attackers to cause a denial of service (refused connections) via malformed requests, which results in a mishandled exception.

  • CVE-2006-6477Dec 20, 2006
    risk 0.00cvss epss 0.00

    FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and configured to use only HTTP, allows local users to modify requests and responses between a client and an agent by hijacking an HTTP FRAgent daemon and conducting a man-in-the-middle (MITM)…