CVE-2006-2707

N/A Unknown
Published: May 31, 2006 Modified: April 16, 2026
View on NVD

Description

Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 does not validate the peer certificate when obtaining an update, which could allow remote attackers to distribute malicious updates to clients.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.kb.cert.org/vuls/id/207337
Source: cve@mitre.org
US Government Resource
http://secunia.com/advisories/20378
Source: af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016184
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.kb.cert.org/vuls/id/207337
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
http://www.kb.cert.org/vuls/id/WDON-6QAPAL
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/2069
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26758
Source: af854a3a-2127-422b-91ae-364da2661108

12 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
0.7%
72th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

secure_elements