CVE-2006-3961

medium Trellix
CVSS v3 Base Score
6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS Score
71.5%
Exploitation probability in 30 days
Top 1% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
M
Confidentiality
P
Integrity
P
Availability
P
Published: August 1, 2006 (7225 days ago)
Last Modified: April 16, 2026
Vendor: Trellix
Source: NVD

Description

Buffer overflow in McSubMgr ActiveX control (mcsubmgr.dll) in McAfee Security Center 6.0.23 for Internet Security Suite 2006, Wireless Home Network Security, Personal Firewall Plus, VirusScan, Privacy Service, SpamKiller, AntiSpyware, and QuickClean allows remote user-assisted attackers to execute arbitrary commands via long string parameters, which are later used in vsprintf.

CWE

CWE-119

Affected Products

mcafee antispywaremcafee internet security suitemcafee personal firewall plusmcafee privacy servicemcafee quickcleanmcafee security centermcafee spamkillermcafee virusscanmcafee wireless home network security

References